[ubuntu/lucid-security] samba, samba_3.4.7~dfsg-1ubuntu3.8_i386_translations.tar.gz, samba_3.4.7~dfsg-1ubuntu3.8_powerpc_translations.tar.gz, samba_3.4.7~dfsg-1ubuntu3.8_sparc_translations.tar.gz, samba_3.4.7~dfsg-1ubuntu3.8_amd64_translations.tar.gz, samba_3.4.7~dfsg-1ubuntu3.8_armel_translations.tar.gz, samba_3.4.7~dfsg-1ubuntu3.8_ia64_translations.tar.gz 2:3.4.7~dfsg-1ubuntu3.8 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Oct 4 20:03:57 UTC 2011


samba (2:3.4.7~dfsg-1ubuntu3.8) lucid-security; urgency=low

  * SECURITY UPDATE: denial of service via stale mtab lockfile
    - debian/patches/security-mask-signals.patch: mask signals while
      updating the mtab file in source3/client/mount.cifs.c.
    - CVE-2011-3585
  * SECURITY UPDATE: mtab corruption via resource limits
    - debian/patches/CVE-2011-1678.patch: truncate mtab file if updating it
      failed in source3/client/{mount.cifs.c,mount.h,mtab.c}.
    - CVE-2011-1678
  * SECURITY UPDATE: mtab corruption via incorrect new line check
    - debian/patches/CVE-2011-2724.patch: check proper return codes in
      source3/client/mount.cifs.c.
    - CVE-2011-2724

Date: Fri, 30 Sep 2011 11:51:06 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/lucid/+source/samba/2:3.4.7~dfsg-1ubuntu3.8
-------------- next part --------------
Format: 1.8
Date: Fri, 30 Sep 2011 11:51:06 -0400
Source: samba
Binary: samba samba-common-bin samba-common samba-tools smbclient swat samba-doc samba-doc-pdf smbfs libpam-smbpass libsmbclient libsmbclient-dev winbind samba-dbg libwbclient0
Architecture: source
Version: 2:3.4.7~dfsg-1ubuntu3.8
Distribution: lucid-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libpam-smbpass - pluggable authentication module for Samba
 libsmbclient - shared library for communication with SMB/CIFS servers
 libsmbclient-dev - development files for libsmbclient
 libwbclient0 - Samba winbind client library
 samba      - SMB/CIFS file, print, and login server for Unix
 samba-common - common files used by both the Samba server and client
 samba-common-bin - common files used by both the Samba server and client
 samba-dbg  - Samba debugging symbols
 samba-doc  - Samba documentation
 samba-doc-pdf - Samba documentation in PDF format
 samba-tools - Samba testing utilities
 smbclient  - command-line SMB/CIFS clients for Unix
 smbfs      - Samba file system utilities
 swat       - Samba Web Administration Tool
 winbind    - Samba nameservice integration server
Changes: 
 samba (2:3.4.7~dfsg-1ubuntu3.8) lucid-security; urgency=low
 .
   * SECURITY UPDATE: denial of service via stale mtab lockfile
     - debian/patches/security-mask-signals.patch: mask signals while
       updating the mtab file in source3/client/mount.cifs.c.
     - CVE-2011-3585
   * SECURITY UPDATE: mtab corruption via resource limits
     - debian/patches/CVE-2011-1678.patch: truncate mtab file if updating it
       failed in source3/client/{mount.cifs.c,mount.h,mtab.c}.
     - CVE-2011-1678
   * SECURITY UPDATE: mtab corruption via incorrect new line check
     - debian/patches/CVE-2011-2724.patch: check proper return codes in
       source3/client/mount.cifs.c.
     - CVE-2011-2724
Checksums-Sha1: 
 5e756abe3e7a71e639e1f4726cfcdc65e6f3b922 2909 samba_3.4.7~dfsg-1ubuntu3.8.dsc
 d79ee7e66441321904176cda04f70d33909bb529 513354 samba_3.4.7~dfsg-1ubuntu3.8.debian.tar.gz
Checksums-Sha256: 
 c0c429520737270e0b14ddae17ad7375abd9ffa54b30f9d764f608cfbc5929ea 2909 samba_3.4.7~dfsg-1ubuntu3.8.dsc
 2d2e66fcfde0f93b5a6be5982b0b13c1404edea1e2137c10a1614fd66888ce14 513354 samba_3.4.7~dfsg-1ubuntu3.8.debian.tar.gz
Files: 
 d52ecdd8820fdc57184a374723cdeca0 2909 net optional samba_3.4.7~dfsg-1ubuntu3.8.dsc
 d6478a51927b85792fad37df7b5d424e 513354 net optional samba_3.4.7~dfsg-1ubuntu3.8.debian.tar.gz
Original-Maintainer: Debian Samba Maintainers <pkg-samba-maint at lists.alioth.debian.org>


More information about the Lucid-changes mailing list