[ubuntu/trusty-proposed] samba 2:4.1.3+dfsg-2ubuntu4 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Mon Mar 17 16:41:19 UTC 2014


samba (2:4.1.3+dfsg-2ubuntu4) trusty; urgency=medium

  * SECURITY UPDATE: Password lockout not enforced for SAMR password
    changes
    - debian/patches/CVE-2013-4496.patch: refactor password lockout code in
      source3/auth/check_samsec.c,
      source3/rpc_server/samr/srv_samr_chgpasswd.c,
      source3/rpc_server/samr/srv_samr_nt.c,
      source3/smbd/lanman.c,
      source4/rpc_server/samr/samr_password.c,
      source4/torture/rpc/samr.c.
    - CVE-2013-4496
  * SECURITY UPDATE: smbcacls can remove a file or directory ACL by
    mistake
    - debian/patches/CVE-2013-6442.patch: handle existing ACL in
      source3/utils/smbcacls.c.
    - CVE-2013-6442
  * debian/patches/readline-ftbfs.patch: fix ftbfs with newer readline6.

Date: Mon, 17 Mar 2014 08:32:30 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/trusty/+source/samba/2:4.1.3+dfsg-2ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Mon, 17 Mar 2014 08:32:30 -0400
Source: samba
Binary: samba samba-libs samba-common samba-common-bin smbclient samba-testsuite registry-tools libparse-pidl-perl samba-dev samba-doc python-samba samba-dsdb-modules samba-vfs-modules libpam-smbpass libsmbclient libsmbclient-dev libsmbsharemodes0 libsmbsharemodes-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev
Architecture: source
Version: 2:4.1.3+dfsg-2ubuntu4
Distribution: trusty
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 libnss-winbind - Samba nameservice integration plugins
 libpam-smbpass - pluggable authentication module for Samba
 libpam-winbind - Windows domain authentication integration plugin
 libparse-pidl-perl - IDL compiler written in Perl
 libsmbclient - shared library for communication with SMB/CIFS servers
 libsmbclient-dev - development files for libsmbclient
 libsmbsharemodes-dev - development files for libsmbsharemodes
 libsmbsharemodes0 - shared library for non-samba access to the samba 'share modes' da
 libwbclient-dev - Samba winbind client library - development files
 libwbclient0 - Samba winbind client library
 python-samba - Python bindings for Samba
 registry-tools - tools for viewing and manipulating the Windows registry
 samba      - SMB/CIFS file, print, and login server for Unix
 samba-common - common files used by both the Samba server and client
 samba-common-bin - Samba common files used by both the server and the client
 samba-dbg  - Samba debugging symbols
 samba-dev  - tools for extending Samba
 samba-doc  - Samba documentation
 samba-dsdb-modules - Samba Directory Services Database
 samba-libs - Samba core libraries
 samba-testsuite - test suite from Samba
 samba-vfs-modules - Samba Virtual FileSystem plugins
 smbclient  - command-line SMB/CIFS clients for Unix
 winbind    - service to resolve user and group information from Windows NT ser
Changes: 
 samba (2:4.1.3+dfsg-2ubuntu4) trusty; urgency=medium
 .
   * SECURITY UPDATE: Password lockout not enforced for SAMR password
     changes
     - debian/patches/CVE-2013-4496.patch: refactor password lockout code in
       source3/auth/check_samsec.c,
       source3/rpc_server/samr/srv_samr_chgpasswd.c,
       source3/rpc_server/samr/srv_samr_nt.c,
       source3/smbd/lanman.c,
       source4/rpc_server/samr/samr_password.c,
       source4/torture/rpc/samr.c.
     - CVE-2013-4496
   * SECURITY UPDATE: smbcacls can remove a file or directory ACL by
     mistake
     - debian/patches/CVE-2013-6442.patch: handle existing ACL in
       source3/utils/smbcacls.c.
     - CVE-2013-6442
   * debian/patches/readline-ftbfs.patch: fix ftbfs with newer readline6.
Checksums-Sha1: 
 802dc43320eb4a08927ae20c6872a82b03d92401 4031 samba_4.1.3+dfsg-2ubuntu4.dsc
 4268de2158d1d8e65daba6b59ccafd4915a2525a 271369 samba_4.1.3+dfsg-2ubuntu4.debian.tar.gz
Checksums-Sha256: 
 fb713491a138fe4346bb0a5e75481d43468aadaeccfaba96a51957ffdee9ccf3 4031 samba_4.1.3+dfsg-2ubuntu4.dsc
 d7ccb455830a06de159785f28e3a029a3224768eccc33978d2de061a8fe02d98 271369 samba_4.1.3+dfsg-2ubuntu4.debian.tar.gz
Files: 
 0a0a3529ecc885a2aa3d05e7e99a6242 4031 net optional samba_4.1.3+dfsg-2ubuntu4.dsc
 c3b1ea9d145dea7c0f89bca53df09b85 271369 net optional samba_4.1.3+dfsg-2ubuntu4.debian.tar.gz
Original-Maintainer: Debian Samba Maintainers <pkg-samba-maint at lists.alioth.debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=55Hp
-----END PGP SIGNATURE-----


More information about the Trusty-changes mailing list