USN-5992-1: ldb vulnerability
3 April 2023
ldb could be made to expose sensitive information over the network.
- ldb - LDAP-like embedded database
Demi Marie Obenour discovered that ldb, when used with Samba, incorrectly
handled certain confidential attribute values. A remote authenticated
attacker could possibly use this issue to obtain certain sensitive
The problem can be corrected by updating your system to the following package versions:
After a standard system update you need to restart applications using ldb,
such as Samba, to make all the necessary changes.
- USN-5993-1: python3-ldb-dev, ctdb, registry-tools, smbclient, ldb-tools, samba-common-bin, libsmbclient-dev, libsmbclient, libpam-winbind, samba, samba-testsuite, samba-dev, samba-vfs-modules, libldb-dev, samba-common, samba-libs, libnss-winbind, libwbclient-dev, python3-ldb, libldb2, winbind, samba-dsdb-modules, libwbclient0, python3-samba