<?xml version="1.0" encoding="UTF-8"?>
<cvrfdoc xmlns="http://www.icasi.org/CVRF/schema/cvrf/1.1" xmlns:cvrf="http://www.icasi.org/CVRF/schema/cvrf/1.1">
  <DocumentTitle xml:lang="en">ctdb-4.5.0-1.1 on GA media</DocumentTitle>
  <DocumentType>SUSE Patch</DocumentType>
  <DocumentPublisher Type="Vendor">
    <ContactDetails>security@suse.de</ContactDetails>
    <IssuingAuthority>SUSE Security Team</IssuingAuthority>
  </DocumentPublisher>
  <DocumentTracking>
    <Identification>
      <ID>openSUSE-SU-2024:10069-1</ID>
    </Identification>
    <Status>Final</Status>
    <Version>1</Version>
    <RevisionHistory>
      <Revision>
        <Number>1</Number>
        <Date>2024-06-15T00:00:00Z</Date>
        <Description>current</Description>
      </Revision>
    </RevisionHistory>
    <InitialReleaseDate>2024-06-15T00:00:00Z</InitialReleaseDate>
    <CurrentReleaseDate>2024-06-15T00:00:00Z</CurrentReleaseDate>
    <Generator>
      <Engine>cve-database/bin/generate-cvrf.pl</Engine>
      <Date>2017-02-24T01:00:00Z</Date>
    </Generator>
  </DocumentTracking>
  <DocumentNotes>
    <Note Title="Topic" Type="Summary" Ordinal="1" xml:lang="en">ctdb-4.5.0-1.1 on GA media</Note>
    <Note Title="Details" Type="General" Ordinal="2" xml:lang="en">These are all security issues fixed in the ctdb-4.5.0-1.1 package on the GA media of openSUSE Tumbleweed.</Note>
    <Note Title="Terms of Use" Type="Legal Disclaimer" Ordinal="3" xml:lang="en">The CVRF data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).</Note>
    <Note Title="Patchnames" Type="Details" Ordinal="4" xml:lang="en">openSUSE-Tumbleweed-2024-10069</Note>
  </DocumentNotes>
  <DocumentDistribution xml:lang="en">Copyright SUSE LLC under the Creative Commons License 4.0 with Attribution (CC-BY-4.0)</DocumentDistribution>
  <DocumentReferences>
    <Reference Type="Self">
      <URL>https://www.suse.com/support/security/rating/</URL>
      <Description>SUSE Security Ratings</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2009-1886/</URL>
      <Description>SUSE CVE CVE-2009-1886 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2009-1888/</URL>
      <Description>SUSE CVE CVE-2009-1888 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2009-2813/</URL>
      <Description>SUSE CVE CVE-2009-2813 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2009-2906/</URL>
      <Description>SUSE CVE CVE-2009-2906 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2009-2948/</URL>
      <Description>SUSE CVE CVE-2009-2948 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-0547/</URL>
      <Description>SUSE CVE CVE-2010-0547 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-0728/</URL>
      <Description>SUSE CVE CVE-2010-0728 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-0787/</URL>
      <Description>SUSE CVE CVE-2010-0787 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-0926/</URL>
      <Description>SUSE CVE CVE-2010-0926 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-1635/</URL>
      <Description>SUSE CVE CVE-2010-1635 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-1642/</URL>
      <Description>SUSE CVE CVE-2010-1642 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-2063/</URL>
      <Description>SUSE CVE CVE-2010-2063 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2010-3069/</URL>
      <Description>SUSE CVE CVE-2010-3069 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2011-0719/</URL>
      <Description>SUSE CVE CVE-2011-0719 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2011-2522/</URL>
      <Description>SUSE CVE CVE-2011-2522 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2011-2694/</URL>
      <Description>SUSE CVE CVE-2011-2694 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2012-0817/</URL>
      <Description>SUSE CVE CVE-2012-0817 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2012-0870/</URL>
      <Description>SUSE CVE CVE-2012-0870 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2012-1182/</URL>
      <Description>SUSE CVE CVE-2012-1182 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2012-2111/</URL>
      <Description>SUSE CVE CVE-2012-2111 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2012-6150/</URL>
      <Description>SUSE CVE CVE-2012-6150 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-0172/</URL>
      <Description>SUSE CVE CVE-2013-0172 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-0213/</URL>
      <Description>SUSE CVE CVE-2013-0213 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-0214/</URL>
      <Description>SUSE CVE CVE-2013-0214 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-0454/</URL>
      <Description>SUSE CVE CVE-2013-0454 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-1863/</URL>
      <Description>SUSE CVE CVE-2013-1863 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-4124/</URL>
      <Description>SUSE CVE CVE-2013-4124 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-4408/</URL>
      <Description>SUSE CVE CVE-2013-4408 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-4475/</URL>
      <Description>SUSE CVE CVE-2013-4475 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-4476/</URL>
      <Description>SUSE CVE CVE-2013-4476 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-4496/</URL>
      <Description>SUSE CVE CVE-2013-4496 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2013-6442/</URL>
      <Description>SUSE CVE CVE-2013-6442 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2014-0178/</URL>
      <Description>SUSE CVE CVE-2014-0178 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2014-0239/</URL>
      <Description>SUSE CVE CVE-2014-0239 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2014-0244/</URL>
      <Description>SUSE CVE CVE-2014-0244 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2014-3493/</URL>
      <Description>SUSE CVE CVE-2014-3493 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2014-3560/</URL>
      <Description>SUSE CVE CVE-2014-3560 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2014-8143/</URL>
      <Description>SUSE CVE CVE-2014-8143 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-0240/</URL>
      <Description>SUSE CVE CVE-2015-0240 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-3223/</URL>
      <Description>SUSE CVE CVE-2015-3223 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-5252/</URL>
      <Description>SUSE CVE CVE-2015-5252 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-5296/</URL>
      <Description>SUSE CVE CVE-2015-5296 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-5299/</URL>
      <Description>SUSE CVE CVE-2015-5299 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-5330/</URL>
      <Description>SUSE CVE CVE-2015-5330 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-5370/</URL>
      <Description>SUSE CVE CVE-2015-5370 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-7560/</URL>
      <Description>SUSE CVE CVE-2015-7560 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-8467/</URL>
      <Description>SUSE CVE CVE-2015-8467 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2015-8543/</URL>
      <Description>SUSE CVE CVE-2015-8543 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-0771/</URL>
      <Description>SUSE CVE CVE-2016-0771 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2110/</URL>
      <Description>SUSE CVE CVE-2016-2110 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2111/</URL>
      <Description>SUSE CVE CVE-2016-2111 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2112/</URL>
      <Description>SUSE CVE CVE-2016-2112 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2113/</URL>
      <Description>SUSE CVE CVE-2016-2113 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2115/</URL>
      <Description>SUSE CVE CVE-2016-2115 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2118/</URL>
      <Description>SUSE CVE CVE-2016-2118 page</Description>
    </Reference>
    <Reference Type="Self">
      <URL>https://www.suse.com/security/cve/CVE-2016-2119/</URL>
      <Description>SUSE CVE CVE-2016-2119 page</Description>
    </Reference>
  </DocumentReferences>
  <ProductTree xmlns="http://www.icasi.org/CVRF/schema/prod/1.1">
    <Branch Type="Product Family" Name="openSUSE Tumbleweed">
      <Branch Type="Product Name" Name="openSUSE Tumbleweed">
        <FullProductName ProductID="openSUSE Tumbleweed" CPE="cpe:/o:opensuse:tumbleweed">openSUSE Tumbleweed</FullProductName>
      </Branch>
    </Branch>
    <Branch Type="Product Version" Name="ctdb-4.5.0-1.1">
      <FullProductName ProductID="ctdb-4.5.0-1.1">ctdb-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="ctdb-pcp-pmda-4.5.0-1.1">
      <FullProductName ProductID="ctdb-pcp-pmda-4.5.0-1.1">ctdb-pcp-pmda-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="ctdb-tests-4.5.0-1.1">
      <FullProductName ProductID="ctdb-tests-4.5.0-1.1">ctdb-tests-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc-binding0-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc-binding0-4.5.0-1.1">libdcerpc-binding0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc-binding0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc-binding0-32bit-4.5.0-1.1">libdcerpc-binding0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc-devel-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc-devel-4.5.0-1.1">libdcerpc-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc-samr-devel-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc-samr-devel-4.5.0-1.1">libdcerpc-samr-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc-samr0-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc-samr0-4.5.0-1.1">libdcerpc-samr0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc-samr0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc-samr0-32bit-4.5.0-1.1">libdcerpc-samr0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc0-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc0-4.5.0-1.1">libdcerpc0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libdcerpc0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libdcerpc0-32bit-4.5.0-1.1">libdcerpc0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-devel-4.5.0-1.1">
      <FullProductName ProductID="libndr-devel-4.5.0-1.1">libndr-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-krb5pac-devel-4.5.0-1.1">
      <FullProductName ProductID="libndr-krb5pac-devel-4.5.0-1.1">libndr-krb5pac-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-krb5pac0-4.5.0-1.1">
      <FullProductName ProductID="libndr-krb5pac0-4.5.0-1.1">libndr-krb5pac0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-krb5pac0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libndr-krb5pac0-32bit-4.5.0-1.1">libndr-krb5pac0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-nbt-devel-4.5.0-1.1">
      <FullProductName ProductID="libndr-nbt-devel-4.5.0-1.1">libndr-nbt-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-nbt0-4.5.0-1.1">
      <FullProductName ProductID="libndr-nbt0-4.5.0-1.1">libndr-nbt0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-nbt0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libndr-nbt0-32bit-4.5.0-1.1">libndr-nbt0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-standard-devel-4.5.0-1.1">
      <FullProductName ProductID="libndr-standard-devel-4.5.0-1.1">libndr-standard-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-standard0-4.5.0-1.1">
      <FullProductName ProductID="libndr-standard0-4.5.0-1.1">libndr-standard0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr-standard0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libndr-standard0-32bit-4.5.0-1.1">libndr-standard0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr0-4.5.0-1.1">
      <FullProductName ProductID="libndr0-4.5.0-1.1">libndr0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libndr0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libndr0-32bit-4.5.0-1.1">libndr0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libnetapi-devel-4.5.0-1.1">
      <FullProductName ProductID="libnetapi-devel-4.5.0-1.1">libnetapi-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libnetapi0-4.5.0-1.1">
      <FullProductName ProductID="libnetapi0-4.5.0-1.1">libnetapi0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libnetapi0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libnetapi0-32bit-4.5.0-1.1">libnetapi0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-credentials-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamba-credentials-devel-4.5.0-1.1">libsamba-credentials-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-credentials0-4.5.0-1.1">
      <FullProductName ProductID="libsamba-credentials0-4.5.0-1.1">libsamba-credentials0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-credentials0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamba-credentials0-32bit-4.5.0-1.1">libsamba-credentials0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-errors-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamba-errors-devel-4.5.0-1.1">libsamba-errors-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-errors0-4.5.0-1.1">
      <FullProductName ProductID="libsamba-errors0-4.5.0-1.1">libsamba-errors0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-errors0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamba-errors0-32bit-4.5.0-1.1">libsamba-errors0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-hostconfig-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamba-hostconfig-devel-4.5.0-1.1">libsamba-hostconfig-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-hostconfig0-4.5.0-1.1">
      <FullProductName ProductID="libsamba-hostconfig0-4.5.0-1.1">libsamba-hostconfig0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-hostconfig0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamba-hostconfig0-32bit-4.5.0-1.1">libsamba-hostconfig0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-passdb-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamba-passdb-devel-4.5.0-1.1">libsamba-passdb-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-passdb0-4.5.0-1.1">
      <FullProductName ProductID="libsamba-passdb0-4.5.0-1.1">libsamba-passdb0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-passdb0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamba-passdb0-32bit-4.5.0-1.1">libsamba-passdb0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-policy-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamba-policy-devel-4.5.0-1.1">libsamba-policy-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-policy0-4.5.0-1.1">
      <FullProductName ProductID="libsamba-policy0-4.5.0-1.1">libsamba-policy0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-policy0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamba-policy0-32bit-4.5.0-1.1">libsamba-policy0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-util-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamba-util-devel-4.5.0-1.1">libsamba-util-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-util0-4.5.0-1.1">
      <FullProductName ProductID="libsamba-util0-4.5.0-1.1">libsamba-util0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamba-util0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamba-util0-32bit-4.5.0-1.1">libsamba-util0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamdb-devel-4.5.0-1.1">
      <FullProductName ProductID="libsamdb-devel-4.5.0-1.1">libsamdb-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamdb0-4.5.0-1.1">
      <FullProductName ProductID="libsamdb0-4.5.0-1.1">libsamdb0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsamdb0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsamdb0-32bit-4.5.0-1.1">libsamdb0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbclient-devel-4.5.0-1.1">
      <FullProductName ProductID="libsmbclient-devel-4.5.0-1.1">libsmbclient-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbclient0-4.5.0-1.1">
      <FullProductName ProductID="libsmbclient0-4.5.0-1.1">libsmbclient0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbclient0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsmbclient0-32bit-4.5.0-1.1">libsmbclient0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbconf-devel-4.5.0-1.1">
      <FullProductName ProductID="libsmbconf-devel-4.5.0-1.1">libsmbconf-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbconf0-4.5.0-1.1">
      <FullProductName ProductID="libsmbconf0-4.5.0-1.1">libsmbconf0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbconf0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsmbconf0-32bit-4.5.0-1.1">libsmbconf0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbldap-devel-4.5.0-1.1">
      <FullProductName ProductID="libsmbldap-devel-4.5.0-1.1">libsmbldap-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbldap0-4.5.0-1.1">
      <FullProductName ProductID="libsmbldap0-4.5.0-1.1">libsmbldap0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libsmbldap0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libsmbldap0-32bit-4.5.0-1.1">libsmbldap0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libtevent-util-devel-4.5.0-1.1">
      <FullProductName ProductID="libtevent-util-devel-4.5.0-1.1">libtevent-util-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libtevent-util0-4.5.0-1.1">
      <FullProductName ProductID="libtevent-util0-4.5.0-1.1">libtevent-util0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libtevent-util0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libtevent-util0-32bit-4.5.0-1.1">libtevent-util0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libwbclient-devel-4.5.0-1.1">
      <FullProductName ProductID="libwbclient-devel-4.5.0-1.1">libwbclient-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libwbclient0-4.5.0-1.1">
      <FullProductName ProductID="libwbclient0-4.5.0-1.1">libwbclient0-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="libwbclient0-32bit-4.5.0-1.1">
      <FullProductName ProductID="libwbclient0-32bit-4.5.0-1.1">libwbclient0-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-4.5.0-1.1">
      <FullProductName ProductID="samba-4.5.0-1.1">samba-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-ceph-4.5.0-1.1">
      <FullProductName ProductID="samba-ceph-4.5.0-1.1">samba-ceph-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-client-4.5.0-1.1">
      <FullProductName ProductID="samba-client-4.5.0-1.1">samba-client-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-client-32bit-4.5.0-1.1">
      <FullProductName ProductID="samba-client-32bit-4.5.0-1.1">samba-client-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-core-devel-4.5.0-1.1">
      <FullProductName ProductID="samba-core-devel-4.5.0-1.1">samba-core-devel-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-doc-4.5.0-1.1">
      <FullProductName ProductID="samba-doc-4.5.0-1.1">samba-doc-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-libs-4.5.0-1.1">
      <FullProductName ProductID="samba-libs-4.5.0-1.1">samba-libs-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-libs-32bit-4.5.0-1.1">
      <FullProductName ProductID="samba-libs-32bit-4.5.0-1.1">samba-libs-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-pidl-4.5.0-1.1">
      <FullProductName ProductID="samba-pidl-4.5.0-1.1">samba-pidl-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-python-4.5.0-1.1">
      <FullProductName ProductID="samba-python-4.5.0-1.1">samba-python-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-test-4.5.0-1.1">
      <FullProductName ProductID="samba-test-4.5.0-1.1">samba-test-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-winbind-4.5.0-1.1">
      <FullProductName ProductID="samba-winbind-4.5.0-1.1">samba-winbind-4.5.0-1.1</FullProductName>
    </Branch>
    <Branch Type="Product Version" Name="samba-winbind-32bit-4.5.0-1.1">
      <FullProductName ProductID="samba-winbind-32bit-4.5.0-1.1">samba-winbind-32bit-4.5.0-1.1</FullProductName>
    </Branch>
    <Relationship ProductReference="ctdb-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:ctdb-4.5.0-1.1">ctdb-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="ctdb-pcp-pmda-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1">ctdb-pcp-pmda-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="ctdb-tests-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1">ctdb-tests-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc-binding0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1">libdcerpc-binding0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc-binding0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1">libdcerpc-binding0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1">libdcerpc-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc-samr-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1">libdcerpc-samr-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc-samr0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1">libdcerpc-samr0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc-samr0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1">libdcerpc-samr0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1">libdcerpc0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libdcerpc0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1">libdcerpc0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-devel-4.5.0-1.1">libndr-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-krb5pac-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1">libndr-krb5pac-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-krb5pac0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1">libndr-krb5pac0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-krb5pac0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1">libndr-krb5pac0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-nbt-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1">libndr-nbt-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-nbt0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1">libndr-nbt0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-nbt0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1">libndr-nbt0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-standard-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1">libndr-standard-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-standard0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1">libndr-standard0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr-standard0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1">libndr-standard0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr0-4.5.0-1.1">libndr0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libndr0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1">libndr0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libnetapi-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1">libnetapi-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libnetapi0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libnetapi0-4.5.0-1.1">libnetapi0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libnetapi0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1">libnetapi0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-credentials-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1">libsamba-credentials-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-credentials0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1">libsamba-credentials0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-credentials0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1">libsamba-credentials0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-errors-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1">libsamba-errors-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-errors0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1">libsamba-errors0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-errors0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1">libsamba-errors0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-hostconfig-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1">libsamba-hostconfig-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-hostconfig0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1">libsamba-hostconfig0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-hostconfig0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1">libsamba-hostconfig0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-passdb-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1">libsamba-passdb-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-passdb0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1">libsamba-passdb0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-passdb0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1">libsamba-passdb0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-policy-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1">libsamba-policy-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-policy0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1">libsamba-policy0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-policy0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1">libsamba-policy0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-util-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1">libsamba-util-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-util0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1">libsamba-util0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamba-util0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1">libsamba-util0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamdb-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1">libsamdb-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamdb0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamdb0-4.5.0-1.1">libsamdb0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsamdb0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1">libsamdb0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbclient-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1">libsmbclient-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbclient0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1">libsmbclient0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbclient0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1">libsmbclient0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbconf-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1">libsmbconf-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbconf0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1">libsmbconf0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbconf0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1">libsmbconf0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbldap-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1">libsmbldap-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbldap0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1">libsmbldap0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libsmbldap0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1">libsmbldap0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libtevent-util-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1">libtevent-util-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libtevent-util0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1">libtevent-util0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libtevent-util0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1">libtevent-util0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libwbclient-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1">libwbclient-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libwbclient0-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libwbclient0-4.5.0-1.1">libwbclient0-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="libwbclient0-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1">libwbclient0-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-4.5.0-1.1">samba-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-ceph-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-ceph-4.5.0-1.1">samba-ceph-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-client-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-client-4.5.0-1.1">samba-client-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-client-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1">samba-client-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-core-devel-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1">samba-core-devel-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-doc-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-doc-4.5.0-1.1">samba-doc-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-libs-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-libs-4.5.0-1.1">samba-libs-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-libs-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1">samba-libs-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-pidl-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-pidl-4.5.0-1.1">samba-pidl-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-python-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-python-4.5.0-1.1">samba-python-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-test-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-test-4.5.0-1.1">samba-test-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-winbind-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-winbind-4.5.0-1.1">samba-winbind-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
    <Relationship ProductReference="samba-winbind-32bit-4.5.0-1.1" RelationType="Default Component Of" RelatesToProductReference="openSUSE Tumbleweed">
      <FullProductName ProductID="openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1">samba-winbind-32bit-4.5.0-1.1 as a component of openSUSE Tumbleweed</FullProductName>
    </Relationship>
  </ProductTree>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="1">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Multiple format string vulnerabilities in client/client.c in smbclient in Samba 3.2.0 through 3.2.12 might allow context-dependent attackers to execute arbitrary code via format string specifiers in a filename.</Note>
    </Notes>
    <CVE>CVE-2009-1886</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>9.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2009-1886.html</URL>
        <Description>CVE-2009-1886</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/513360</URL>
        <Description>SUSE Bug 513360</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/515479</URL>
        <Description>SUSE Bug 515479</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="2">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vectors related to read access to uninitialized memory.</Note>
    </Notes>
    <CVE>CVE-2009-1888</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2009-1888.html</URL>
        <Description>CVE-2009-1888</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/513360</URL>
        <Description>SUSE Bug 513360</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/515479</URL>
        <Description>SUSE Bug 515479</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="3">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.</Note>
    </Notes>
    <CVE>CVE-2009-2813</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2009-2813.html</URL>
        <Description>CVE-2009-2813</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/515479</URL>
        <Description>SUSE Bug 515479</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/539517</URL>
        <Description>SUSE Bug 539517</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/543115</URL>
        <Description>SUSE Bug 543115</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="4">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.</Note>
    </Notes>
    <CVE>CVE-2009-2906</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2009-2906.html</URL>
        <Description>CVE-2009-2906</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/515479</URL>
        <Description>SUSE Bug 515479</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/543115</URL>
        <Description>SUSE Bug 543115</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="5">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">mount.cifs in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8 and 3.4 before 3.4.2, when mount.cifs is installed suid root, does not properly enforce permissions, which allows local users to read part of the credentials file and obtain the password by specifying the path to the credentials file and using the --verbose or -v option.</Note>
    </Notes>
    <CVE>CVE-2009-2948</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>1.9</BaseScore>
        <Vector>AV:L/AC:M/Au:N/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2009-2948.html</URL>
        <Description>CVE-2009-2948</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/515479</URL>
        <Description>SUSE Bug 515479</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/542150</URL>
        <Description>SUSE Bug 542150</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/543115</URL>
        <Description>SUSE Bug 543115</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="6">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">client/mount.cifs.c in mount.cifs in smbfs in Samba 3.4.5 and earlier does not verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string.</Note>
    </Notes>
    <CVE>CVE-2010-0547</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>2.1</BaseScore>
        <Vector>AV:L/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-0547.html</URL>
        <Description>CVE-2010-0547</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/577868</URL>
        <Description>SUSE Bug 577868</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/577925</URL>
        <Description>SUSE Bug 577925</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/583535</URL>
        <Description>SUSE Bug 583535</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/583536</URL>
        <Description>SUSE Bug 583536</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/594263</URL>
        <Description>SUSE Bug 594263</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/597421</URL>
        <Description>SUSE Bug 597421</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/602694</URL>
        <Description>SUSE Bug 602694</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/709819</URL>
        <Description>SUSE Bug 709819</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="7">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">smbd in Samba 3.3.11, 3.4.6, and 3.5.0, when libcap support is enabled, runs with the CAP_DAC_OVERRIDE capability, which allows remote authenticated users to bypass intended file permissions via standard filesystem operations with any client.</Note>
    </Notes>
    <CVE>CVE-2010-0728</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>8.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-0728.html</URL>
        <Description>CVE-2010-0728</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/586683</URL>
        <Description>SUSE Bug 586683</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="8">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">client/mount.cifs.c in mount.cifs in smbfs in Samba 3.0.22, 3.0.28a, 3.2.3, 3.3.2, 3.4.0, and 3.4.5 allows local users to mount a CIFS share on an arbitrary mountpoint, and gain privileges, via a symlink attack on the mountpoint directory file.</Note>
    </Notes>
    <CVE>CVE-2010-0787</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.4</BaseScore>
        <Vector>AV:L/AC:M/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-0787.html</URL>
        <Description>CVE-2010-0787</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/550002</URL>
        <Description>SUSE Bug 550002</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/602694</URL>
        <Description>SUSE Bug 602694</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/620680</URL>
        <Description>SUSE Bug 620680</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="9">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The default configuration of smbd in Samba before 3.3.11, 3.4.x before 3.4.6, and 3.5.x before 3.5.0rc3, when a writable share exists, allows remote authenticated users to leverage a directory traversal vulnerability, and access arbitrary files, by using the symlink command in smbclient to create a symlink containing .. (dot dot) sequences, related to the combination of the unix extensions and wide links options.</Note>
    </Notes>
    <CVE>CVE-2010-0926</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-0926.html</URL>
        <Description>CVE-2010-0926</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1027147</URL>
        <Description>SUSE Bug 1027147</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/577868</URL>
        <Description>SUSE Bug 577868</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/597421</URL>
        <Description>SUSE Bug 597421</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="10">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The chain_reply function in process.c in smbd in Samba before 3.4.8 and 3.5.x before 3.5.2 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) via a Negotiate Protocol request with a certain 0x0003 field value followed by a Session Setup AndX request with a certain 0x8003 field value.</Note>
    </Notes>
    <CVE>CVE-2010-1635</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-1635.html</URL>
        <Description>CVE-2010-1635</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/605935</URL>
        <Description>SUSE Bug 605935</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="11">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The reply_sesssetup_and_X_spnego function in sesssetup.c in smbd in Samba before 3.4.8 and 3.5.x before 3.5.2 allows remote attackers to trigger an out-of-bounds read, and cause a denial of service (process crash), via a \xff\xff security blob length in a Session Setup AndX request.</Note>
    </Notes>
    <CVE>CVE-2010-1642</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-1642.html</URL>
        <Description>CVE-2010-1642</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/605935</URL>
        <Description>SUSE Bug 605935</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="12">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0.x before 3.3.13 allows remote attackers to cause a denial of service (memory corruption and daemon crash) or possibly execute arbitrary code via a crafted field in a packet.</Note>
    </Notes>
    <CVE>CVE-2010-2063</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-2063.html</URL>
        <Description>CVE-2010-2063</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/611927</URL>
        <Description>SUSE Bug 611927</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="13">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Stack-based buffer overflow in the (1) sid_parse and (2) dom_sid_parse functions in Samba before 3.5.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted Windows Security ID (SID) on a file share.</Note>
    </Notes>
    <CVE>CVE-2010-3069</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2010-3069.html</URL>
        <Description>CVE-2010-3069</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/637218</URL>
        <Description>SUSE Bug 637218</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="14">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.x before 3.3.15, 3.4.x before 3.4.12, and 3.5.x before 3.5.7 does not perform range checks for file descriptors before use of the FD_SET macro, which allows remote attackers to cause a denial of service (stack memory corruption, and infinite loop or daemon crash) by opening a large number of files, related to (1) Winbind or (2) smbd.</Note>
    </Notes>
    <CVE>CVE-2011-0719</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2011-0719.html</URL>
        <Description>CVE-2011-0719</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/670431</URL>
        <Description>SUSE Bug 670431</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="15">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start daemons, (3) add shares, (4) remove shares, (5) add printers, (6) remove printers, (7) add user accounts, or (8) remove user accounts, as demonstrated by certain start, stop, and restart parameters to the status program.</Note>
    </Notes>
    <CVE>CVE-2011-2522</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2011-2522.html</URL>
        <Description>CVE-2011-2522</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/705241</URL>
        <Description>SUSE Bug 705241</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="16">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Cross-site scripting (XSS) vulnerability in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allows remote authenticated administrators to inject arbitrary web script or HTML via the username parameter to the passwd program (aka the user field to the Change Password page).</Note>
    </Notes>
    <CVE>CVE-2011-2694</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>2.6</BaseScore>
        <Vector>AV:N/AC:H/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2011-2694.html</URL>
        <Description>CVE-2011-2694</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="17">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Memory leak in smbd in Samba 3.6.x before 3.6.3 allows remote attackers to cause a denial of service (memory and CPU consumption) by making many connection requests.</Note>
    </Notes>
    <CVE>CVE-2012-0817</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2012-0817.html</URL>
        <Description>CVE-2012-0817</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/743986</URL>
        <Description>SUSE Bug 743986</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="18">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Heap-based buffer overflow in process.c in smbd in Samba 3.0, as used in the file-sharing service on the BlackBerry PlayBook tablet before 2.0.0.7971 and other products, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a Batched (aka AndX) request that triggers infinite recursion.</Note>
    </Notes>
    <CVE>CVE-2012-0870</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.9</BaseScore>
        <Vector>AV:A/AC:M/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2012-0870.html</URL>
        <Description>CVE-2012-0870</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/747934</URL>
        <Description>SUSE Bug 747934</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/752797</URL>
        <Description>SUSE Bug 752797</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="19">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array length in a manner consistent with validation of array memory allocation, which allows remote attackers to execute arbitrary code via a crafted RPC call.</Note>
    </Notes>
    <CVE>CVE-2012-1182</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>10</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2012-1182.html</URL>
        <Description>CVE-2012-1182</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/747934</URL>
        <Description>SUSE Bug 747934</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/752797</URL>
        <Description>SUSE Bug 752797</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/754443</URL>
        <Description>SUSE Bug 754443</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="20">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) RemoveAccountRights LSA RPC procedures in smbd in Samba 3.4.x before 3.4.17, 3.5.x before 3.5.15, and 3.6.x before 3.6.5 do not properly restrict modifications to the privileges database, which allows remote authenticated users to obtain the "take ownership" privilege via an LSA connection.</Note>
    </Notes>
    <CVE>CVE-2012-2111</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6.5</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2012-2111.html</URL>
        <Description>CVE-2012-2111</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/754443</URL>
        <Description>SUSE Bug 754443</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/757576</URL>
        <Description>SUSE Bug 757576</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="21">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The winbind_name_list_to_sid_string_list function in nsswitch/pam_winbind.c in Samba through 4.1.2 handles invalid require_membership_of group names by accepting authentication by any user, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging an administrator's pam_winbind configuration-file mistake.</Note>
    </Notes>
    <CVE>CVE-2012-6150</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.6</BaseScore>
        <Vector>AV:N/AC:H/Au:S/C:P/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2012-6150.html</URL>
        <Description>CVE-2012-6150</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/844720</URL>
        <Description>SUSE Bug 844720</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/853347</URL>
        <Description>SUSE Bug 853347</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="22">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 4.0.x before 4.0.1, in certain Active Directory domain-controller configurations, does not properly interpret Access Control Entries that are based on an objectClass, which allows remote authenticated users to bypass intended restrictions on modifying LDAP directory objects by leveraging (1) objectClass access by a user, (2) objectClass access by a group, or (3) write access to an attribute.</Note>
    </Notes>
    <CVE>CVE-2013-0172</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-0172.html</URL>
        <Description>CVE-2013-0172</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/798364</URL>
        <Description>SUSE Bug 798364</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="23">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.21, 3.6.x before 3.6.12, and 4.x before 4.0.2 allows remote attackers to conduct clickjacking attacks via a (1) FRAME or (2) IFRAME element.</Note>
    </Notes>
    <CVE>CVE-2013-0213</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5.1</BaseScore>
        <Vector>AV:N/AC:H/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-0213.html</URL>
        <Description>CVE-2013-0213</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/799641</URL>
        <Description>SUSE Bug 799641</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/800982</URL>
        <Description>SUSE Bug 800982</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/880220</URL>
        <Description>SUSE Bug 880220</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="24">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Cross-site request forgery (CSRF) vulnerability in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.21, 3.6.x before 3.6.12, and 4.x before 4.0.2 allows remote attackers to hijack the authentication of arbitrary users by leveraging knowledge of a password and composing requests that perform SWAT actions.</Note>
    </Notes>
    <CVE>CVE-2013-0214</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5.1</BaseScore>
        <Vector>AV:N/AC:H/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-0214.html</URL>
        <Description>CVE-2013-0214</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/799641</URL>
        <Description>SUSE Bug 799641</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/880220</URL>
        <Description>SUSE Bug 880220</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="25">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1.4 before 1.4.0.1 and possibly other products, does not properly enforce CIFS share attributes, which allows remote authenticated users to (1) write to a read-only share; (2) trigger data-integrity problems related to the oplock, locking, coherency, or leases attribute; or (3) have an unspecified impact by leveraging incorrect handling of the browseable or "hide unreadable" parameter.</Note>
    </Notes>
    <CVE>CVE-2013-0454</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:N/I:P/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-0454.html</URL>
        <Description>CVE-2013-0454</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/811975</URL>
        <Description>SUSE Bug 811975</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="26">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 4.x before 4.0.4, when configured as an Active Directory domain controller, uses world-writable permissions on non-default CIFS shares, which allows remote authenticated users to read, modify, create, or delete arbitrary files via standard filesystem operations.</Note>
    </Notes>
    <CVE>CVE-2013-1863</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-1863.html</URL>
        <Description>CVE-2013-1863</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/809624</URL>
        <Description>SUSE Bug 809624</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="27">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Integer overflow in the read_nttrans_ea_list function in nttrans.c in smbd in Samba 3.x before 3.5.22, 3.6.x before 3.6.17, and 4.x before 4.0.8 allows remote attackers to cause a denial of service (memory consumption) via a malformed packet.</Note>
    </Notes>
    <CVE>CVE-2013-4124</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-4124.html</URL>
        <Description>CVE-2013-4124</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/829969</URL>
        <Description>SUSE Bug 829969</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="28">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samba 3.x before 3.6.22, 4.0.x before 4.0.13, and 4.1.x before 4.1.3 allows remote AD domain controllers to execute arbitrary code via an invalid fragment length in a DCE-RPC packet.</Note>
    </Notes>
    <CVE>CVE-2013-4408</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:A/AC:H/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>8.3</BaseScore>
        <Vector>AV:A/AC:L/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-4408.html</URL>
        <Description>CVE-2013-4408</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/844720</URL>
        <Description>SUSE Bug 844720</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/848101</URL>
        <Description>SUSE Bug 848101</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/882906</URL>
        <Description>SUSE Bug 882906</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="29">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.2.x through 3.6.x before 3.6.20, 4.0.x before 4.0.11, and 4.1.x before 4.1.1, when vfs_streams_depot or vfs_streams_xattr is enabled, allows remote attackers to bypass intended file restrictions by leveraging ACL differences between a file and an associated alternate data stream (ADS).</Note>
    </Notes>
    <CVE>CVE-2013-4475</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4</BaseScore>
        <Vector>AV:N/AC:H/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-4475.html</URL>
        <Description>CVE-2013-4475</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/848101</URL>
        <Description>SUSE Bug 848101</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/880220</URL>
        <Description>SUSE Bug 880220</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="30">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 4.0.x before 4.0.11 and 4.1.x before 4.1.1, when LDAP or HTTP is provided over SSL, uses world-readable permissions for a private key, which allows local users to obtain sensitive information by reading the key file, as demonstrated by access to the local filesystem on an AD domain controller.</Note>
    </Notes>
    <CVE>CVE-2013-4476</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>1.2</BaseScore>
        <Vector>AV:L/AC:H/Au:N/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-4476.html</URL>
        <Description>CVE-2013-4476</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/848103</URL>
        <Description>SUSE Bug 848103</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="31">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.</Note>
    </Notes>
    <CVE>CVE-2013-4496</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-4496.html</URL>
        <Description>CVE-2013-4496</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/849224</URL>
        <Description>SUSE Bug 849224</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/866844</URL>
        <Description>SUSE Bug 866844</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="32">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.</Note>
    </Notes>
    <CVE>CVE-2013-6442</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2013-6442.html</URL>
        <Description>CVE-2013-6442</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/855866</URL>
        <Description>SUSE Bug 855866</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="33">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.6.6 through 3.6.23, 4.0.x before 4.0.18, and 4.1.x before 4.1.8, when a certain vfs shadow copy configuration is enabled, does not properly initialize the SRV_SNAPSHOT_ARRAY response field, which allows remote authenticated users to obtain potentially sensitive information from process memory via a (1) FSCTL_GET_SHADOW_COPY_DATA or (2) FSCTL_SRV_ENUMERATE_SNAPSHOTS request.</Note>
    </Notes>
    <CVE>CVE-2014-0178</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2014-0178.html</URL>
        <Description>CVE-2014-0178</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/872396</URL>
        <Description>SUSE Bug 872396</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="34">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged response packet that triggers a communication loop, a related issue to CVE-1999-0103.</Note>
    </Notes>
    <CVE>CVE-2014-0239</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2014-0239.html</URL>
        <Description>CVE-2014-0239</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/878642</URL>
        <Description>SUSE Bug 878642</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="35">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The sys_recvfrom function in nmbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x before 4.1.9 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed UDP packet.</Note>
    </Notes>
    <CVE>CVE-2014-0244</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.3</BaseScore>
        <Vector>AV:A/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2014-0244.html</URL>
        <Description>CVE-2014-0244</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/880962</URL>
        <Description>SUSE Bug 880962</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/883758</URL>
        <Description>SUSE Bug 883758</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="36">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The push_ascii function in smbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x before 4.1.9 allows remote authenticated users to cause a denial of service (memory corruption and daemon crash) via an attempt to read a Unicode pathname without specifying use of Unicode, leading to a character-set conversion failure that triggers an invalid pointer dereference.</Note>
    </Notes>
    <CVE>CVE-2014-3493</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>2.7</BaseScore>
        <Vector>AV:A/AC:L/Au:S/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2014-3493.html</URL>
        <Description>CVE-2014-3493</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/878642</URL>
        <Description>SUSE Bug 878642</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/880962</URL>
        <Description>SUSE Bug 880962</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/883758</URL>
        <Description>SUSE Bug 883758</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="37">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code via unspecified vectors that modify heap memory, involving a sizeof operation on an incorrect variable in the unstrcpy macro in string_wrappers.h.</Note>
    </Notes>
    <CVE>CVE-2014-3560</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.9</BaseScore>
        <Vector>AV:A/AC:M/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2014-3560.html</URL>
        <Description>CVE-2014-3560</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/889429</URL>
        <Description>SUSE Bug 889429</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="38">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 4.0.x before 4.0.24, 4.1.x before 4.1.16, and 4.2.x before 4.2rc4, when an Active Directory Domain Controller (AD DC) is configured, allows remote authenticated users to set the LDB userAccountControl UF_SERVER_TRUST_ACCOUNT bit, and consequently gain privileges, by leveraging delegation of authority for user-account or computer-account creation.</Note>
    </Notes>
    <CVE>CVE-2014-8143</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>8.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2014-8143.html</URL>
        <Description>CVE-2014-8143</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/914279</URL>
        <Description>SUSE Bug 914279</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="39">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.</Note>
    </Notes>
    <CVE>CVE-2015-0240</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>critical</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>10</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-0240.html</URL>
        <Description>CVE-2015-0240</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/917376</URL>
        <Description>SUSE Bug 917376</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="40">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The ldb_wildcard_compare function in ldb_match.c in ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, mishandles certain zero values, which allows remote attackers to cause a denial of service (infinite loop) via crafted packets.</Note>
    </Notes>
    <CVE>CVE-2015-3223</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>7.8</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:C</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-3223.html</URL>
        <Description>CVE-2015-3223</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958581</URL>
        <Description>SUSE Bug 958581</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="41">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">vfs.c in smbd in Samba 3.x and 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, when share names with certain substring relationships exist, allows remote attackers to bypass intended file-access restrictions via a symlink that points outside of a share.</Note>
    </Notes>
    <CVE>CVE-2015-5252</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:C/I:N/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-5252.html</URL>
        <Description>CVE-2015-5252</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958582</URL>
        <Description>SUSE Bug 958582</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="42">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.x and 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3 supports connections that are encrypted but unsigned, which allows man-in-the-middle attackers to conduct encrypted-to-unencrypted downgrade attacks by modifying the client-server data stream, related to clidfs.c, libsmb_server.c, and smbXcli_base.c.</Note>
    </Notes>
    <CVE>CVE-2015-5296</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.2</BaseScore>
        <Vector>AV:A/AC:H/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-5296.html</URL>
        <Description>CVE-2015-5296</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1058622</URL>
        <Description>SUSE Bug 1058622</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958584</URL>
        <Description>SUSE Bug 958584</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973031</URL>
        <Description>SUSE Bug 973031</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="43">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The shadow_copy2_get_shadow_copy_data function in modules/vfs_shadow_copy2.c in Samba 3.x and 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3 does not verify that the DIRECTORY_LIST access right has been granted, which allows remote attackers to access snapshots by visiting a shadow copy directory.</Note>
    </Notes>
    <CVE>CVE-2015-5299</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>3.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:N/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-5299.html</URL>
        <Description>CVE-2015-5299</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958583</URL>
        <Description>SUSE Bug 958583</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="44">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, mishandles string lengths, which allows remote attackers to obtain sensitive information from daemon heap memory by sending crafted packets and then reading (1) an error message or (2) a database value.</Note>
    </Notes>
    <CVE>CVE-2015-5330</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>low</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:P/I:N/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>5</BaseScore>
        <Vector>AV:N/AC:L/Au:N/C:P/I:N/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-5330.html</URL>
        <Description>CVE-2015-5330</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958581</URL>
        <Description>SUSE Bug 958581</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958586</URL>
        <Description>SUSE Bug 958586</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="45">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not properly implement the DCE-RPC layer, which allows remote attackers to perform protocol-downgrade attacks, cause a denial of service (application crash or CPU consumption), or possibly execute arbitrary code on a client system via unspecified vectors.</Note>
    </Notes>
    <CVE>CVE-2015-5370</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>8.5</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:C/I:C/A:C</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-5370.html</URL>
        <Description>CVE-2015-5370</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/936862</URL>
        <Description>SUSE Bug 936862</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="46">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The SMB1 implementation in smbd in Samba 3.x and 4.x before 4.1.23, 4.2.x before 4.2.9, 4.3.x before 4.3.6, and 4.4.x before 4.4.0rc4 allows remote authenticated users to modify arbitrary ACLs by using a UNIX SMB1 call to create a symlink, and then using a non-UNIX SMB1 call to write to the ACL content.</Note>
    </Notes>
    <CVE>CVE-2015-7560</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.9</BaseScore>
        <Vector>AV:A/AC:M/Au:S/C:P/I:P/A:P</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4</BaseScore>
        <Vector>AV:N/AC:L/Au:S/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-7560.html</URL>
        <Description>CVE-2015-7560</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/968222</URL>
        <Description>SUSE Bug 968222</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="47">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The samldb_check_user_account_control_acl function in dsdb/samdb/ldb_modules/samldb.c in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3 does not properly check for administrative privileges during creation of machine accounts, which allows remote authenticated users to bypass intended access restrictions by leveraging the existence of a domain with both a Samba DC and a Windows DC, a similar issue to CVE-2015-2535.</Note>
    </Notes>
    <CVE>CVE-2015-8467</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>important</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-8467.html</URL>
        <Description>CVE-2015-8467</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958585</URL>
        <Description>SUSE Bug 958585</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="48">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The networking implementation in the Linux kernel through 4.3.3, as used in Android and other products, does not validate protocol identifiers for certain protocol families, which allows local users to cause a denial of service (NULL function pointer dereference and system crash) or possibly gain privileges by leveraging CLONE_NEWUSER support to execute a crafted SOCK_RAW application.</Note>
    </Notes>
    <CVE>CVE-2015-8543</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>1.7</BaseScore>
        <Vector>AV:L/AC:L/Au:S/C:N/I:N/A:P</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>6.9</BaseScore>
        <Vector>AV:L/AC:M/Au:N/C:C/I:C/A:C</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2015-8543.html</URL>
        <Description>CVE-2015-8543</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1020452</URL>
        <Description>SUSE Bug 1020452</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1052256</URL>
        <Description>SUSE Bug 1052256</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1115893</URL>
        <Description>SUSE Bug 1115893</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/923755</URL>
        <Description>SUSE Bug 923755</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/958886</URL>
        <Description>SUSE Bug 958886</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/963994</URL>
        <Description>SUSE Bug 963994</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/969522</URL>
        <Description>SUSE Bug 969522</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="49">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The internal DNS server in Samba 4.x before 4.1.23, 4.2.x before 4.2.9, 4.3.x before 4.3.6, and 4.4.x before 4.4.0rc4, when an AD DC is configured, allows remote authenticated users to cause a denial of service (out-of-bounds read) or possibly obtain sensitive information from process memory by uploading a crafted DNS TXT record.</Note>
    </Notes>
    <CVE>CVE-2016-0771</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.9</BaseScore>
        <Vector>AV:N/AC:M/Au:S/C:P/I:N/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-0771.html</URL>
        <Description>CVE-2016-0771</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/968223</URL>
        <Description>SUSE Bug 968223</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="50">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The NTLMSSP authentication implementation in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 allows man-in-the-middle attackers to perform protocol-downgrade attacks by modifying the client-server data stream to remove application-layer flags or encryption settings, as demonstrated by clearing the NTLMSSP_NEGOTIATE_SEAL or NTLMSSP_NEGOTIATE_SIGN option to disrupt LDAP security.</Note>
    </Notes>
    <CVE>CVE-2016-2110</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>5.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2110.html</URL>
        <Description>CVE-2016-2110</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/1009711</URL>
        <Description>SUSE Bug 1009711</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973031</URL>
        <Description>SUSE Bug 973031</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973033</URL>
        <Description>SUSE Bug 973033</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973036</URL>
        <Description>SUSE Bug 973036</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="51">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The NETLOGON service in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2, when a domain controller is configured, allows remote attackers to spoof the computer name of a secure channel's endpoint, and obtain sensitive session information, by running a crafted application and leveraging the ability to sniff network traffic, a related issue to CVE-2015-0005.</Note>
    </Notes>
    <CVE>CVE-2016-2111</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:N/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:A/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2111.html</URL>
        <Description>CVE-2016-2111</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973032</URL>
        <Description>SUSE Bug 973032</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="52">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The bundled LDAP client library in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not recognize the "client ldap sasl wrapping" setting, which allows man-in-the-middle attackers to perform LDAP protocol-downgrade attacks by modifying the client-server data stream.</Note>
    </Notes>
    <CVE>CVE-2016-2112</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:A/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2112.html</URL>
        <Description>CVE-2016-2112</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973031</URL>
        <Description>SUSE Bug 973031</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973033</URL>
        <Description>SUSE Bug 973033</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="53">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not verify X.509 certificates from TLS servers, which allows man-in-the-middle attackers to spoof LDAPS and HTTPS servers and obtain sensitive information via a crafted certificate.</Note>
    </Notes>
    <CVE>CVE-2016-2113</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:A/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>5.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2113.html</URL>
        <Description>CVE-2016-2113</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973031</URL>
        <Description>SUSE Bug 973031</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973033</URL>
        <Description>SUSE Bug 973033</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973034</URL>
        <Description>SUSE Bug 973034</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="54">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB clients by modifying the client-server data stream.</Note>
    </Notes>
    <CVE>CVE-2016-2115</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:N/I:P/A:N</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2115.html</URL>
        <Description>CVE-2016-2115</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/973036</URL>
        <Description>SUSE Bug 973036</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="55">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">The MS-SAMR and MS-LSAD protocol implementations in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 mishandle DCERPC connections, which allows man-in-the-middle attackers to perform protocol-downgrade attacks and impersonate users by modifying the client-server data stream, aka "BADLOCK."</Note>
    </Notes>
    <CVE>CVE-2016-2118</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2118.html</URL>
        <Description>CVE-2016-2118</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/971965</URL>
        <Description>SUSE Bug 971965</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/975276</URL>
        <Description>SUSE Bug 975276</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/977416</URL>
        <Description>SUSE Bug 977416</Description>
      </Reference>
    </References>
  </Vulnerability>
  <Vulnerability xmlns="http://www.icasi.org/CVRF/schema/vuln/1.1" Ordinal="56">
    <Notes>
      <Note Title="Vulnerability Description" Type="General" Ordinal="1" xml:lang="en">libcli/smb/smbXcli_base.c in Samba 4.x before 4.2.14, 4.3.x before 4.3.11, and 4.4.x before 4.4.5 allows man-in-the-middle attackers to bypass a client-signing protection mechanism, and consequently spoof SMB2 and SMB3 servers, via the (1) SMB2_SESSION_FLAG_IS_GUEST or (2) SMB2_SESSION_FLAG_IS_NULL flag.</Note>
    </Notes>
    <CVE>CVE-2016-2119</CVE>
    <ProductStatuses>
      <Status Type="Fixed">
        <ProductID>openSUSE Tumbleweed:ctdb-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-pcp-pmda-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:ctdb-tests-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-binding0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc-samr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libdcerpc0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-krb5pac0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-nbt0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr-standard0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libndr0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libnetapi0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-credentials0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-errors0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-hostconfig0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-passdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-policy0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamba-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsamdb0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbconf0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libsmbldap0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libtevent-util0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:libwbclient0-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-ceph-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-client-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-core-devel-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-doc-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-libs-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-pidl-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-python-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-test-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-32bit-4.5.0-1.1</ProductID>
        <ProductID>openSUSE Tumbleweed:samba-winbind-4.5.0-1.1</ProductID>
      </Status>
    </ProductStatuses>
    <Threats>
      <Threat Type="Impact">
        <Description>moderate</Description>
      </Threat>
    </Threats>
    <CVSSScoreSets>
      <ScoreSet>
        <BaseScore>4.3</BaseScore>
        <Vector>AV:A/AC:M/Au:N/C:P/I:P/A:N</Vector>
      </ScoreSet>
      <ScoreSet>
        <BaseScore>6.8</BaseScore>
        <Vector>AV:N/AC:M/Au:N/C:P/I:P/A:P</Vector>
      </ScoreSet>
    </CVSSScoreSets>
    <Remediations>
      <Remediation Type="Vendor Fix">
        <Description xml:lang="en">To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
</Description>
        <URL/>
      </Remediation>
    </Remediations>
    <References>
      <Reference>
        <URL>https://www.suse.com/security/cve/CVE-2016-2119.html</URL>
        <Description>CVE-2016-2119</Description>
      </Reference>
      <Reference>
        <URL>https://bugzilla.suse.com/986869</URL>
        <Description>SUSE Bug 986869</Description>
      </Reference>
    </References>
  </Vulnerability>
</cvrfdoc>
