Advisories ยป MGASA-2022-0299

Updated ldb/samba/sssd packages fix security vulnerability

Publication date: 25 Aug 2022
Modification date: 25 Aug 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-2031 , CVE-2022-32742 , CVE-2022-32744 , CVE-2022-32745 , CVE-2022-32746

Description

Fixed AD restrictions bypass associated with changing passwords
(bsc#1201495). (CVE-2022-2031)
Fixed a memory leak in SMB1 (bsc#1201496). (CVE-2022-32742)
Fixed an arbitrary password change request for any AD  user (bsc#1201493).
(CVE-2022-32744)
Fixed a remote server crash with an LDAP add or modify request
(bsc#1201492) (CVE-2022-32745)
Fixed a use-after-free occurring in database audit logging (bsc#1201490).
(CVE-2022-32746)
                

References

SRPMS

8/core