UbuntuUpdates.org

Package "samba"

Name: samba

Description:

This package is just an umbrella for a group of other packages, it has no description.
Description samples from packages in group:

  • clustered database to store temporary data
  • tools for viewing and manipulating the Windows registry
  • test suite from Samba

Latest version: 2:4.10.7+dfsg-0ubuntu2.2
Release: eoan (19.10)
Level: security
Repository: universe

Links

Save this URL for the latest version of "samba": https://www.ubuntuupdates.org/samba



Other versions of "samba" in Eoan

Repository Area Version
base universe 2:4.10.7+dfsg-0ubuntu2
base main 2:4.10.7+dfsg-0ubuntu2
security main 2:4.10.7+dfsg-0ubuntu2.2
updates universe 2:4.10.7+dfsg-0ubuntu2.2
updates main 2:4.10.7+dfsg-0ubuntu2.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 2:4.10.7+dfsg-0ubuntu2.2 2019-10-29 13:06:32 UTC

  samba (2:4.10.7+dfsg-0ubuntu2.2) eoan-security; urgency=medium

  * SECURITY UPDATE: client code can return filenames containing path
    separators
    - debian/patches/CVE-2019-10218-1.patch: protect SMB1 client code
      from evil server returned names in source3/libsmb/clilist.c,
      source3/libsmb/proto.h.
    - debian/patches/CVE-2019-10218-2.patch: Protect SMB2 client code
      from evil server returned names in source3/libsmb/cli_smb2_fnum.c.
    - CVE-2019-10218
  * SECURITY UPDATE: Samba AD DC check password script does not receive the
    full password
    - debian/patches/CVE-2019-14833-1.patch: use utf8 characters in the
      unacceptable password in selftest/target/Samba4.pm.
    - debian/patches/CVE-2019-14833-2.patch: send full password to check
      password script in source4/dsdb/common/util.c.
    - CVE-2019-14833
  * SECURITY UPDATE: User with "get changes" permission can crash AD DC
    LDAP server via dirsync
    - debian/patches/CVE-2019-14847-1.patch: ensure attrs exist in
      source4/dsdb/samdb/ldb_modules/dirsync.c.
    - debian/patches/CVE-2019-14847-2.patch: demonstrate the correct
      interaction of ranged_results style attributes and dirsync in
      source4/dsdb/tests/python/dirsync.py.
    - debian/patches/CVE-2019-14847-3.patch: correct behaviour of
      ranged_results when combined with dirsync in
      source4/dsdb/samdb/ldb_modules/dirsync.c,
      source4/dsdb/samdb/ldb_modules/ranged_results.c.
    - CVE-2019-14847

 -- Marc Deslauriers <email address hidden> Mon, 21 Oct 2019 07:36:00 -0400




About   -   Send Feedback to @ubuntu_updates