[ubuntu/disco-security] samba 2:4.10.0+dfsg-0ubuntu2.2 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Wed Jun 19 11:11:40 UTC 2019


samba (2:4.10.0+dfsg-0ubuntu2.2) disco-security; urgency=medium

  * SECURITY UPDATE: zone operations can crash rpc server
    - debian/patches/CVE-2019-12435-1.patch: avoid NULL deference if zone
      not found in DnssrvOperation in
      python/samba/tests/dcerpc/dnsserver.py,
      source4/rpc_server/dnsserver/dcerpc_dnsserver.c.
    - debian/patches/CVE-2019-12435-2.patch: avoid NULL deference if zone
      not found in DnssrvOperation2 in
      python/samba/tests/dcerpc/dnsserver.py,
      source4/rpc_server/dnsserver/dcerpc_dnsserver.c.
    - CVE-2019-12435
  * SECURITY UPDATE: paged_searches crash on LDAP and homes access
    - debian/patches/CVE-2019-12436.patch: ignore successful results
      without messages in source4/dsdb/samdb/ldb_modules/paged_results.c,
      source4/dsdb/tests/python/vlv.py.
    - CVE-2019-12436

Date: 2019-06-12 16:51:12.843736+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/samba/2:4.10.0+dfsg-0ubuntu2.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the Disco-changes mailing list