Vulnerability Bulletins

DSA-3816 samba - security update

   
Affected software Debian
 
Jann Horn of Google discovered a time-of-check, time-of-use racecondition in Samba, a SMB/CIFS file, print, and login server for Unix. Amalicious client can take advantage of this flaw by exploting a symlinkrace to access areas of the server file system not exported under ashare definition.

More info:

https://www.debian.org/security/2017/dsa-3816