Back to bug 1144902

Who When What Removed Added
jsegitz 2019-08-08 14:32:14 UTC Summary VUL-0: EMBARGOED: samba: Samba servers can inject relative paths in directory entry lists VUL-0: EMBARGOED: CVE-2019-10218: samba: Samba servers can inject relative paths in directory entry lists
Alias CVE-2019-10218:
atoptsoglou 2019-08-08 14:33:45 UTC CC atoptsoglou
Alias CVE-2019-10218: CVE-2019-10218
ahasenkopf 2019-08-08 14:40:02 UTC Priority P5 - None P3 - Medium
meissner 2019-08-21 14:32:46 UTC CC meissner
meissner 2019-10-17 08:46:39 UTC URL https://smash.suse.de/issue/239272/
smash_bz 2019-10-17 11:58:58 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N)
swamp 2019-10-17 22:43:03 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:planned:update
jmcdonough 2019-10-23 13:58:54 UTC CC david.mulder, palcantara
wolfgang.frisch 2019-10-23 13:58:57 UTC CC wolfgang.frisch
swamp 2019-10-24 11:59:11 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:planned:update CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate
Deadline 2019-11-07
swamp 2019-10-24 14:49:09 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13031:important ibs:running:13032:important maint:planned:update
swamp 2019-10-26 14:36:34 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13031:important ibs:running:13032:important maint:planned:update CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13031:important ibs:running:13032:important maint:planned:update ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important
meissner 2019-10-29 10:38:09 UTC Group SUSE Security Internal
Summary VUL-0: EMBARGOED: CVE-2019-10218: samba: Samba servers can inject relative paths in directory entry lists VUL-0: CVE-2019-10218: samba: Samba servers can inject relative paths in directory entry lists
swamp 2019-10-29 15:42:46 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13031:important ibs:running:13032:important maint:planned:update ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important maint:planned:update ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important
swamp 2019-10-29 17:27:35 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important maint:planned:update ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important maint:released:sle10-sp3:64395
swamp 2019-10-29 23:38:26 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important maint:released:sle10-sp3:64395 CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important maint:released:sle10-sp3:64395 maint:planned:update
swamp 2019-10-30 23:39:12 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13049:important ibs:running:13048:important ibs:running:12643:important maint:released:sle10-sp3:64395 maint:planned:update CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13048:important maint:released:sle10-sp3:64395 maint:planned:update
swamp 2019-10-30 23:42:48 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13048:important maint:released:sle10-sp3:64395 maint:planned:update CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13048:important maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important
swamp 2019-10-31 15:46:07 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13022:important ibs:running:13048:important maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13048:important maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important
swamp 2019-11-04 23:37:57 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important ibs:running:13048:important maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important
scabrero 2019-11-05 11:04:58 UTC Status NEW IN_PROGRESS
CC scabrero
Assignee samba security-team
swamp 2019-11-05 15:38:57 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate ibs:running:13023:important maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important
swamp 2019-11-05 15:46:36 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate maint:released:sle10-sp3:64395 maint:planned:update obs:running:11380:important obs:running:11379:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate maint:released:sle10-sp3:64395 maint:planned:update obs:running:11379:important
swamp 2019-11-08 07:31:49 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:running:64394:moderate maint:released:sle10-sp3:64395 maint:planned:update obs:running:11379:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update obs:running:11379:important
swamp 2019-11-09 15:49:24 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update obs:running:11379:important CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update
smash_bz 2019-11-15 20:03:42 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N)
rfrohl 2020-01-20 15:06:15 UTC CC rfrohl
Flags needinfo?(scabrero)
scabrero 2020-01-21 16:17:11 UTC Flags needinfo?(scabrero)
swamp 2020-01-22 15:42:18 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N) ibs:running:13910:moderate CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N)
maint-coord+maintenance_robot 2020-03-18 18:17:45 UTC Whiteboard CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 maint:planned:update CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N) ibs:running:13910:moderate maint:released:sle10-sp3:64395 CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:planned:update CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N)
smash_bz 2020-05-12 18:39:11 UTC Whiteboard maint:released:sle10-sp3:64395 CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:planned:update CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N) CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N) CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395
smash_bz 2020-06-14 05:12:24 UTC Whiteboard CVSSv2:NVD:CVE-2019-10218:4.3:(AV:N/AC:M/Au:N/C:N/I:P/A:N) CVSSv3:NVD:CVE-2019-10218:6.5:(AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N) CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395 CVSSv3:SUSE:CVE-2019-10218:5.3:(AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N) maint:released:sle10-sp3:64395
atoptsoglou 2020-06-29 08:38:33 UTC Status IN_PROGRESS RESOLVED
Resolution --- FIXED

Back to bug 1144902