[ubuntu/jaunty-security] samba_3.3.2-1ubuntu3.4_i386_translations.tar.gz, samba, samba_3.3.2-1ubuntu3.4_powerpc_translations.tar.gz, samba_3.3.2-1ubuntu3.4_sparc_translations.tar.gz (delayed), samba_3.3.2-1ubuntu3.4_ia64_translations.tar.gz, samba_3.3.2-1ubuntu3.4_armel_translations.tar.gz, samba_3.3.2-1ubuntu3.4_lpia_translations.tar.gz, samba_3.3.2-1ubuntu3.4_hppa_translations.tar.gz, samba_3.3.2-1ubuntu3.4_amd64_translations.tar.gz 2:3.3.2-1ubuntu3.4 (Accepted)
Ubuntu Installer
archive at ubuntu.com
Wed Mar 24 13:04:34 GMT 2010
samba (2:3.3.2-1ubuntu3.4) jaunty-security; urgency=low
* SECURITY UPDATE: arbitrary file disclosure via wide links
- debian/patches/security-CVE-2010-0926.patch: disable wide links when
UNIX extensions are enabled in source/include/proto.h,
source/param/loadparm.c, source/smbd/service.c, source/smbd/trans2.c,
source/smbd/vfs.c, docs/htmldocs/manpages/smb.conf.5.html and
docs/manpages/smb.conf.5.
- CVE-2010-0926
* WARNING: This changes the default samba behaviour. For security
reasons, it is no longer possible to use wide links and UNIX
extensions at the same time. After applying this security update, wide
links will be disabled automatically as UNIX extensions are turned on
by default. If wide links are required, you may re-enable them by
adding "unix extensions = no" to the [global] section of
the /etc/samba/smb.conf configuration file.
Date: Thu, 18 Mar 2010 14:41:27 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/jaunty/+source/samba/2:3.3.2-1ubuntu3.4
-------------- next part --------------
Format: 1.8
Date: Thu, 18 Mar 2010 14:41:27 -0400
Source: samba
Binary: samba samba-common samba-tools smbclient swat samba-doc samba-doc-pdf smbfs libpam-smbpass libsmbclient libsmbclient-dev winbind samba-dbg libwbclient0
Architecture: source
Version: 2:3.3.2-1ubuntu3.4
Distribution: jaunty-security
Urgency: low
Maintainer: Ubuntu Core Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
libpam-smbpass - pluggable authentication module for Samba
libsmbclient - shared library for communication with SMB/CIFS servers
libsmbclient-dev - development files for libsmbclient
libwbclient0 - Samba winbind client library
samba - SMB/CIFS file, print, and login server for Unix
samba-common - common files used by both the Samba server and client
samba-dbg - Samba debugging symbols
samba-doc - Samba documentation
samba-doc-pdf - Samba documentation in PDF format
samba-tools - Samba testing utilities
smbclient - command-line SMB/CIFS clients for Unix
smbfs - Samba file system utilities
swat - Samba Web Administration Tool
winbind - Samba nameservice integration server
Changes:
samba (2:3.3.2-1ubuntu3.4) jaunty-security; urgency=low
.
* SECURITY UPDATE: arbitrary file disclosure via wide links
- debian/patches/security-CVE-2010-0926.patch: disable wide links when
UNIX extensions are enabled in source/include/proto.h,
source/param/loadparm.c, source/smbd/service.c, source/smbd/trans2.c,
source/smbd/vfs.c, docs/htmldocs/manpages/smb.conf.5.html and
docs/manpages/smb.conf.5.
- CVE-2010-0926
* WARNING: This changes the default samba behaviour. For security
reasons, it is no longer possible to use wide links and UNIX
extensions at the same time. After applying this security update, wide
links will be disabled automatically as UNIX extensions are turned on
by default. If wide links are required, you may re-enable them by
adding "unix extensions = no" to the [global] section of
the /etc/samba/smb.conf configuration file.
Checksums-Sha1:
85e56e630abb1b37b1e10d725a7b29f3ef0d6e45 2102 samba_3.3.2-1ubuntu3.4.dsc
51429379a7f572fa936b8d40cd371e726a0147ec 250534 samba_3.3.2-1ubuntu3.4.diff.gz
Checksums-Sha256:
30a728ac63e7858c30e3faaca17f4e7163753e1aca16df58d714cf52d0d583e9 2102 samba_3.3.2-1ubuntu3.4.dsc
7535db99739f8fece2cd65fe8fd5bf80d60122f1a7251dc82f51fa0cedcddaff 250534 samba_3.3.2-1ubuntu3.4.diff.gz
Files:
1ffdd3d59bf871cd021c39ad64831e1c 2102 net optional samba_3.3.2-1ubuntu3.4.dsc
4e0891e6d64b743a0d63e30995eb18b5 250534 net optional samba_3.3.2-1ubuntu3.4.diff.gz
Original-Maintainer: Debian Samba Maintainers <pkg-samba-maint at lists.alioth.debian.org>
More information about the Jaunty-changes
mailing list