RHSA-2022:1756: Moderate: samba security, bug fix and enhancement update
Red Hat Gluster Storage is a software only scale-out storage solution that provides flexible and affordable unstructured data storage. It unifies data storage and infrastructure, increases performance, and improves availability and manageability to meet enterprise-level storage challenges.<br>Security Fix(es):<br><li> samba: Symlink race error can allow metadata read and modify outside of the exported share (CVE-2021-20316)</li> <li> samba: Information leak via symlinks of existance of files or directories outside of the exported share (CVE-2021-44141)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.<br>Users of samba with Red Hat Gluster Storage are advised to upgrade to these updated packages.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for the advisory related to Red Hat Gluster Storage?
The vulnerability ID is RHSA-2022:1756.
What packages are affected by RHSA-2022:1756?
The vulnerability affects packages such as libtalloc, libtdb, libtevent, samba, and ctdb among others.
How do I remediate the vulnerability identified as RHSA-2022:1756?
You can remediate RHSA-2022:1756 by upgrading to the specified versions of the affected packages as listed in the advisory.
What is the impact of not addressing RHSA-2022:1756?
Failing to address RHSA-2022:1756 may leave your system vulnerable to security exploits that could compromise data integrity and availability.
Is there a detailed description available for the security issues related to RHSA-2022:1756?
Yes, detailed descriptions of the security issues are provided in the advisory associated with RHSA-2022:1756.