-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 12 Apr 2016 16:18:57 +1200 Source: samba Binary: samba samba-libs samba-common samba-common-bin smbclient samba-testsuite registry-tools libparse-pidl-perl samba-dev samba-doc python-samba samba-dsdb-modules samba-vfs-modules libpam-smbpass libsmbclient libsmbclient-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev ctdb Architecture: armel Version: 2:4.2.10+dfsg-0+deb8u1 Distribution: jessie-security Urgency: high Maintainer: armel Build Daemon (arnold) Changed-By: Andrew Bartlett Description: ctdb - clustered database to store temporary data libnss-winbind - Samba nameservice integration plugins libpam-smbpass - pluggable authentication module for Samba libpam-winbind - Windows domain authentication integration plugin libparse-pidl-perl - IDL compiler written in Perl libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient-dev - Samba winbind client library - development files libwbclient0 - Samba winbind client library python-samba - Python bindings for Samba registry-tools - tools for viewing and manipulating the Windows registry samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - Samba common files used by both the server and the client samba-dbg - Samba debugging symbols samba-dev - tools for extending Samba samba-doc - Samba documentation samba-dsdb-modules - Samba Directory Services Database samba-libs - Samba core libraries samba-testsuite - test suite from Samba samba-vfs-modules - Samba Virtual FileSystem plugins smbclient - command-line SMB/CIFS clients for Unix winbind - service to resolve user and group information from Windows NT ser Closes: 813406 Changes: samba (2:4.2.10+dfsg-0+deb8u1) jessie-security; urgency=high . [ Jelmer Vernooij ] * New upstream release. + Drop patch Fix-CTDB-build-with-PMDA.patch: applied upstream. * Re-enable cluster support. * Add patch no_wrapper: avoid dependencies on {nss,uid,socket}_wrapper. . [ Mathieu Parent ] * Fix CTDB behavior since CVE-2015-8543 (Closes: #813406) * Don't build ctdb twice: - Shorten build time - Fix ctdb log path from /var/log/log.ctdb to /var/log/ctdb/log.ctdb - Remove unused /usr/lib/*/ctdb/*.so files . [ Andrew Bartlett ] * New upstream release + Fixes: - CVE-2015-5370 (Multiple errors in DCE-RPC code) - CVE-2016-2110 (Man in the middle attacks possible with NTLMSSP) - CVE-2016-2111 (NETLOGON Spoofing Vulnerability) - CVE-2016-2112 (LDAP client and server don't enforce integrity) - CVE-2016-2113 (Missing TLS certificate validation) - CVE-2016-2114 ("server signing = mandatory" not enforced) - CVE-2016-2115 (SMB IPC traffic is not integrity protected) - CVE-2016-2118 (SAMR and LSA man in the middle attacks possible) * Backport BackupKey patches from Samba 4.3.0 to avoid regressions * Additional regression fix for 'net ads join' to a Windows 2003 domain by metze * Revert the change to made libsamba-debug a library, allowing openchange to link to Samba 4.2 * Add Breaks against openchangeproxy that uses an API and ABI that has changed . [ Marc Deslauriers ] * Fix double-free in pam_smbpass Checksums-Sha1: ad86389580eca7c7c55e128e0cfa1762dbe9b94b 1666864 samba_4.2.10+dfsg-0+deb8u1_armel.deb 7494c8026ce3047a09890dc91eced0ff32951dd5 3498874 samba-libs_4.2.10+dfsg-0+deb8u1_armel.deb 5d34b67723ad6d74b35b2f17f542ee55bac613af 562524 samba-common-bin_4.2.10+dfsg-0+deb8u1_armel.deb 106b0a6ef495b0e3054ab09bcdc175813c466d0f 305830 smbclient_4.2.10+dfsg-0+deb8u1_armel.deb 049db63aa57894a196f42770b478935031569652 1482138 samba-testsuite_4.2.10+dfsg-0+deb8u1_armel.deb 765bf3333d85362f935b332422c06cf33d9df8da 117512 registry-tools_4.2.10+dfsg-0+deb8u1_armel.deb 34cd7189b0d16afa97659937975f5386db655c9d 182002 libparse-pidl-perl_4.2.10+dfsg-0+deb8u1_armel.deb f2a8f2fe551d9c8bf3f092aa46e6036f6a41e02e 332900 samba-dev_4.2.10+dfsg-0+deb8u1_armel.deb fa892bd471231c46997aa04e69cc27ca317249c1 851618 python-samba_4.2.10+dfsg-0+deb8u1_armel.deb c410334440ed72b4c18546aa0b2ea25269630095 274956 samba-dsdb-modules_4.2.10+dfsg-0+deb8u1_armel.deb 15ffbd078664546b9a0642129298c5dc9aceb307 302242 samba-vfs-modules_4.2.10+dfsg-0+deb8u1_armel.deb dbe5c9430dbc6a990798844608d75582b55f30fd 107330 libpam-smbpass_4.2.10+dfsg-0+deb8u1_armel.deb 3880888da5079b372b6c4199c43701571d956e94 138542 libsmbclient_4.2.10+dfsg-0+deb8u1_armel.deb b6e9ff32ce867c085126e452782ef0850f8eb336 131530 libsmbclient-dev_4.2.10+dfsg-0+deb8u1_armel.deb 0b594faaaf296ef65402b4c84d2fae214041b4e2 440354 winbind_4.2.10+dfsg-0+deb8u1_armel.deb 8c3bbfee6662bfbfe30b902af9d80834f44a1027 116866 libpam-winbind_4.2.10+dfsg-0+deb8u1_armel.deb d1ac981df84820391f50e3eb33cc05616cac0fa0 103646 libnss-winbind_4.2.10+dfsg-0+deb8u1_armel.deb 69cf4dd3d6c8c52c269dab90a91a96f33533727c 31266740 samba-dbg_4.2.10+dfsg-0+deb8u1_armel.deb 00787091992062d1a981e5f4b872a1418554b41c 115262 libwbclient0_4.2.10+dfsg-0+deb8u1_armel.deb ebd6c25970a7dab70c0e7784be574a180b200649 104196 libwbclient-dev_4.2.10+dfsg-0+deb8u1_armel.deb 551c79f5ea3eb47afca39d12a2f0e139890b2d3a 481158 ctdb_4.2.10+dfsg-0+deb8u1_armel.deb Checksums-Sha256: 4adf142fe069bdaf53004f4e82abc54a77972f2bc237463179f7de467a4faa09 1666864 samba_4.2.10+dfsg-0+deb8u1_armel.deb c87524a19fd2104fe529f804ba418ea4da558eafc517830c471194f025e33823 3498874 samba-libs_4.2.10+dfsg-0+deb8u1_armel.deb 0df4130ec6e60b602b0efc8b0e771b17d711a7588e59456090136becfcf72207 562524 samba-common-bin_4.2.10+dfsg-0+deb8u1_armel.deb 52d92d57285170b71c64246ee3581eace6e493ba187ce86b114b3f28010a3858 305830 smbclient_4.2.10+dfsg-0+deb8u1_armel.deb a42dd4e4dcc80a4ec53349c6f83309311bca62a58e0050e762d2ce5f5a49b421 1482138 samba-testsuite_4.2.10+dfsg-0+deb8u1_armel.deb 09d467ef685ecb124fdf1a30c2739055e28b700dd3cd3d224a2e0993ed03b149 117512 registry-tools_4.2.10+dfsg-0+deb8u1_armel.deb 3ff5eeb69c93e9dc92c7d41d656af732a41d68f22ad46dd686c052e07d4bc0a5 182002 libparse-pidl-perl_4.2.10+dfsg-0+deb8u1_armel.deb e01bb808648e7dd3d59f7958884ac9f214e8293cd82cf156c4403b2ddd125ad8 332900 samba-dev_4.2.10+dfsg-0+deb8u1_armel.deb d58573d80c1c4a78fcf0003d5752aca563a87b05a27a7853de574d9d0bf5c386 851618 python-samba_4.2.10+dfsg-0+deb8u1_armel.deb 17eb5c14268bdf6662796863a8c2552e8740937296d51839fc659b920a8c96f4 274956 samba-dsdb-modules_4.2.10+dfsg-0+deb8u1_armel.deb b022620b8b32493668d275ef1ae8babe4f60ba3c05c956f712bd318cc18a519a 302242 samba-vfs-modules_4.2.10+dfsg-0+deb8u1_armel.deb ec08ed0217e515aa24123d68aa5e09e850f15880d7023030c7daa53500264404 107330 libpam-smbpass_4.2.10+dfsg-0+deb8u1_armel.deb 1c416cc786902c3b727b74a982fcd7938f9ba2f8c37a24f1cdfe8ba06b2e78fe 138542 libsmbclient_4.2.10+dfsg-0+deb8u1_armel.deb 097f2aea285648bcf101c9bba045dfec0f6a3d12b4461457b6afcfe2d1d83cb1 131530 libsmbclient-dev_4.2.10+dfsg-0+deb8u1_armel.deb ae6a6391c294b9fc8810fedd3f7af862076f75020546e090b391d36e288bf687 440354 winbind_4.2.10+dfsg-0+deb8u1_armel.deb ea6bc191086632eb29420b3a2031e70fc9276e56c3b98ca2f7e98319e8c6539c 116866 libpam-winbind_4.2.10+dfsg-0+deb8u1_armel.deb 99495d48499dca7bdc9f32b267c504e7bde793a397c86dd23972c8e1237b9e55 103646 libnss-winbind_4.2.10+dfsg-0+deb8u1_armel.deb e986182a5248bb972cdd7acb4fcc0f036b5daeddc675892164f667f58760baff 31266740 samba-dbg_4.2.10+dfsg-0+deb8u1_armel.deb 15141afc5e3796ce97a4ee7be7e11a52c68014d1677f2f3e576a8b05457b2a19 115262 libwbclient0_4.2.10+dfsg-0+deb8u1_armel.deb 144efc6ab1ac11419bd40cbfdb08699962f466df44d004c2573f4b3722c9c217 104196 libwbclient-dev_4.2.10+dfsg-0+deb8u1_armel.deb f19d57ffe47522938c74fb1f2ec452a7391e7db136071ba3a5068041c65a350e 481158 ctdb_4.2.10+dfsg-0+deb8u1_armel.deb Files: 01a96e7b0fcfe95e9bcd9c1760251d4f 1666864 net optional samba_4.2.10+dfsg-0+deb8u1_armel.deb 0785c91014732264510dc8b828b9ec1b 3498874 libs optional samba-libs_4.2.10+dfsg-0+deb8u1_armel.deb bcc0a362e96bc0008c525d2791948060 562524 net optional samba-common-bin_4.2.10+dfsg-0+deb8u1_armel.deb dda49d565c849e12517114fbc8730e6c 305830 net optional smbclient_4.2.10+dfsg-0+deb8u1_armel.deb db81df830a0b43c3ed955532a8d94bac 1482138 net optional samba-testsuite_4.2.10+dfsg-0+deb8u1_armel.deb 9a4c4404994c76ebd1c600b308e0c411 117512 net optional registry-tools_4.2.10+dfsg-0+deb8u1_armel.deb 83ae05a41ae6505040b46dfe073fe379 182002 perl optional libparse-pidl-perl_4.2.10+dfsg-0+deb8u1_armel.deb a45fada9a8a65241b9ad0cea1c3b4f84 332900 devel optional samba-dev_4.2.10+dfsg-0+deb8u1_armel.deb 62157a3ea64ec0c07602e1674dfe6339 851618 python optional python-samba_4.2.10+dfsg-0+deb8u1_armel.deb 5218d06a5490ba8590adb0cbcc0da693 274956 libs optional samba-dsdb-modules_4.2.10+dfsg-0+deb8u1_armel.deb 4d007742c6502e66a76d03a3c284a5ae 302242 net optional samba-vfs-modules_4.2.10+dfsg-0+deb8u1_armel.deb daecd6fc291f3a391db0868ea8a3cadb 107330 admin extra libpam-smbpass_4.2.10+dfsg-0+deb8u1_armel.deb 14925635485f7fe78532567feafcb095 138542 libs optional libsmbclient_4.2.10+dfsg-0+deb8u1_armel.deb 2bf82e759bcdbd86a2042743541319db 131530 libdevel extra libsmbclient-dev_4.2.10+dfsg-0+deb8u1_armel.deb 4163eee4336ffdcdc3f96aba1b109037 440354 net optional winbind_4.2.10+dfsg-0+deb8u1_armel.deb a3da0c5c546540620138198d163c45a9 116866 net optional libpam-winbind_4.2.10+dfsg-0+deb8u1_armel.deb 17cd866c4a78abb8dcb070d8527eb752 103646 net optional libnss-winbind_4.2.10+dfsg-0+deb8u1_armel.deb 4ed59ec28badd3d7a9427f9a5db702c3 31266740 debug extra samba-dbg_4.2.10+dfsg-0+deb8u1_armel.deb 71ac4aec06f89df1da8fd9dd9256f617 115262 libs optional libwbclient0_4.2.10+dfsg-0+deb8u1_armel.deb 20c6c4ac5f897da208a40ed417c59a7a 104196 libdevel optional libwbclient-dev_4.2.10+dfsg-0+deb8u1_armel.deb 55277778bfd96e183e65154983ee0a13 481158 net optional ctdb_4.2.10+dfsg-0+deb8u1_armel.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXDS9IAAoJENBm/icq5fs0QRkP/1ySoC5YXCBo4i/Aan5ZxW1p 7qEd/DJB6I07GGB3RYKRIf610yyNgpATJgYsCSIypw9BuWTrpzmPfJPQ6ybEEWLz x5VZ0y1X3+15YOEuup7EH9/2dOzuM1aBlgxmyISBlwgeauQlDYCxKZkK+qR3x5kw MW/tcfmnx4LgwpxVsm5ccimNHVR0eYHUuE6Qtd8oQDATMWNHBG3uvEqxbTYI48kz 25AmT2aZv3G7Vd9dzkX9RG0mUSkI72ESFxTAjKBLIntffSU0ux5iT+9Iv7P4PWOj AJH8R+lb4h6GVdqxNh0Ukw05UmA0PBNvOH73XO0t91Bq6TH0yAf4wDnt9kTbp5Mo lYaJ6I3s77/LvDpu4vPEV5s23Unjje69HpNOfplaLEJQrjG4DA+X5TnbtUCO1Ff7 2dtXUwZlU5ftZqrIWtgELZBFVjjJR+Aq6zX9KF4NAGY7EF1Gml8xnvYeeA+vSFbS eirLEaIO0qnG65j0DEBOCmZ1GZxSIfX+QztM/lrYNB+6wXjg1OQBeTj5AAPXGHg7 oojUotdIPlCQ26gF/JVGLv6zRbt2i8DPwgWMsEZkYCGnkeYsvKEKwF1cOt3nXXoY nztSSK+7ipOzI4BUS5WUW9zV4Y0SFH34226mIVZ+4IdRB6QP/eJbhZ+8tTl7dJC/ cyHsoUD9p96DzHMogV8m =+RbZ -----END PGP SIGNATURE-----