Update Samba to 4.9.9 to address CVE-2019-12435
Description
Problem/Justification
None
Impact
None
duplicates
SmartDraw Connector
Katalon Manual Tests (BETA)
Activity
Show:

Bonnie Follweiler June 24, 2019 at 1:00 PM
Test Passed in FreeNAS-11.2-INTERNAL-10

Dru Lavigne June 24, 2019 at 12:45 PMEdited

Bug Clerk June 19, 2019 at 7:22 PM
Complete
Pinned fields
Click on the next to a field label to start pinning.
Details
Details
Assignee

Reporter

Components
Fix versions
Affects versions
Priority
More fields
Time tracking
More fields
Time trackingKatalon Platform
Linked Test Cases, Katalon Defect Results, Katalon Studio Test Results
Katalon Platform
Linked Test Cases, Katalon Defect Results, Katalon Studio Test Results
Created June 19, 2019 at 6:29 PM
Updated July 1, 2022 at 4:35 PM
Resolved June 24, 2019 at 1:46 PM
CVE-2019-12435:
An authenticated user can crash the Samba AD DC's RPC server process via a
NULL pointer dereference.
For more details and workarounds, please refer to the security advisory.
Fixed in Samba 4.9.9
FreeNAS 11.3 is unaffected because it is compiled without DC support.
https://www.samba.org/samba/security/CVE-2019-12435.html