-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 12 Apr 2016 16:18:57 +1200 Source: samba Binary: samba samba-libs samba-common samba-common-bin smbclient samba-testsuite registry-tools libparse-pidl-perl samba-dev samba-doc python-samba samba-dsdb-modules samba-vfs-modules libpam-smbpass libsmbclient libsmbclient-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev ctdb Architecture: i386 Version: 2:4.2.10+dfsg-0+deb8u1 Distribution: jessie-security Urgency: high Maintainer: amd64/i386 Build Daemon (babin) Changed-By: Andrew Bartlett Description: ctdb - clustered database to store temporary data libnss-winbind - Samba nameservice integration plugins libpam-smbpass - pluggable authentication module for Samba libpam-winbind - Windows domain authentication integration plugin libparse-pidl-perl - IDL compiler written in Perl libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient-dev - Samba winbind client library - development files libwbclient0 - Samba winbind client library python-samba - Python bindings for Samba registry-tools - tools for viewing and manipulating the Windows registry samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - Samba common files used by both the server and the client samba-dbg - Samba debugging symbols samba-dev - tools for extending Samba samba-doc - Samba documentation samba-dsdb-modules - Samba Directory Services Database samba-libs - Samba core libraries samba-testsuite - test suite from Samba samba-vfs-modules - Samba Virtual FileSystem plugins smbclient - command-line SMB/CIFS clients for Unix winbind - service to resolve user and group information from Windows NT ser Closes: 813406 Changes: samba (2:4.2.10+dfsg-0+deb8u1) jessie-security; urgency=high . [ Jelmer Vernooij ] * New upstream release. + Drop patch Fix-CTDB-build-with-PMDA.patch: applied upstream. * Re-enable cluster support. * Add patch no_wrapper: avoid dependencies on {nss,uid,socket}_wrapper. . [ Mathieu Parent ] * Fix CTDB behavior since CVE-2015-8543 (Closes: #813406) * Don't build ctdb twice: - Shorten build time - Fix ctdb log path from /var/log/log.ctdb to /var/log/ctdb/log.ctdb - Remove unused /usr/lib/*/ctdb/*.so files . [ Andrew Bartlett ] * New upstream release + Fixes: - CVE-2015-5370 (Multiple errors in DCE-RPC code) - CVE-2016-2110 (Man in the middle attacks possible with NTLMSSP) - CVE-2016-2111 (NETLOGON Spoofing Vulnerability) - CVE-2016-2112 (LDAP client and server don't enforce integrity) - CVE-2016-2113 (Missing TLS certificate validation) - CVE-2016-2114 ("server signing = mandatory" not enforced) - CVE-2016-2115 (SMB IPC traffic is not integrity protected) - CVE-2016-2118 (SAMR and LSA man in the middle attacks possible) * Backport BackupKey patches from Samba 4.3.0 to avoid regressions * Additional regression fix for 'net ads join' to a Windows 2003 domain by metze * Revert the change to made libsamba-debug a library, allowing openchange to link to Samba 4.2 * Add Breaks against openchangeproxy that uses an API and ABI that has changed . [ Marc Deslauriers ] * Fix double-free in pam_smbpass Checksums-Sha1: fea30a0f53ac6617ad1160018f9df4b78109f2d8 1998118 samba_4.2.10+dfsg-0+deb8u1_i386.deb 78bd256307038880be094ae5bb82301073f54245 4493682 samba-libs_4.2.10+dfsg-0+deb8u1_i386.deb 47313d14f3af4af96c9f4f2d7115f6e288ef31bd 646744 samba-common-bin_4.2.10+dfsg-0+deb8u1_i386.deb 361ac65b153fc8d24f1fd41956c97df866dfe6d6 351650 smbclient_4.2.10+dfsg-0+deb8u1_i386.deb 867c3dc9e50947203560ccd6c92693b5544596d0 1672930 samba-testsuite_4.2.10+dfsg-0+deb8u1_i386.deb 57bee8895f34a00b6f55136591a2b421b75e250c 120858 registry-tools_4.2.10+dfsg-0+deb8u1_i386.deb d5103d934f9faf37c3c46a34e2e8f7d69f583af4 182022 libparse-pidl-perl_4.2.10+dfsg-0+deb8u1_i386.deb 0151b48b79038f4a9e8bdc1936bcbe20ca0bbbab 332886 samba-dev_4.2.10+dfsg-0+deb8u1_i386.deb 625901d78505174068553bfdc4ff81fd6b3f678e 984228 python-samba_4.2.10+dfsg-0+deb8u1_i386.deb a978c885790b424ba9e27556264f97a13b20c990 321474 samba-dsdb-modules_4.2.10+dfsg-0+deb8u1_i386.deb cc2cc957476664e949fed316ff854196bfae144d 337848 samba-vfs-modules_4.2.10+dfsg-0+deb8u1_i386.deb b494cc4ffd426939c3b34490fc511b051e270841 109472 libpam-smbpass_4.2.10+dfsg-0+deb8u1_i386.deb 393abb12409a95cfb2f624eae6aa93382c246c90 147884 libsmbclient_4.2.10+dfsg-0+deb8u1_i386.deb 225650ca060ff3f62c527a587bd7a5848e7543da 131508 libsmbclient-dev_4.2.10+dfsg-0+deb8u1_i386.deb cad0134e5e045f12c1e4d619f8c81c01ca8c1255 527390 winbind_4.2.10+dfsg-0+deb8u1_i386.deb 2626f697e01c3b64f116b9e00e64cac77989c0a0 121690 libpam-winbind_4.2.10+dfsg-0+deb8u1_i386.deb a32252aacb3d944235b83b33f68996319b8d0d4d 105188 libnss-winbind_4.2.10+dfsg-0+deb8u1_i386.deb 9ced3b830e701be5a5b884d4ef8e473a4355ee63 22366578 samba-dbg_4.2.10+dfsg-0+deb8u1_i386.deb 9c422c79012dd88c75f7cda53834fcf50d2b189d 121612 libwbclient0_4.2.10+dfsg-0+deb8u1_i386.deb 0a7f344112e33f6dba7fa1129a0b9eff82e4dc75 104200 libwbclient-dev_4.2.10+dfsg-0+deb8u1_i386.deb dcd691126cb406efc19ee6ab873580568efd656c 526758 ctdb_4.2.10+dfsg-0+deb8u1_i386.deb Checksums-Sha256: b40e4d1ce277a93cfc458b015f4e280e55af88f4d9267ec75484153dd474bc77 1998118 samba_4.2.10+dfsg-0+deb8u1_i386.deb 908bb056bdad33ef2392c5c906c9350e354c962c5e3865f3a562d201e5994d03 4493682 samba-libs_4.2.10+dfsg-0+deb8u1_i386.deb d1fc71275f2d7e8ae9920d18719514889291250760f380d0409b5302cb38e6a0 646744 samba-common-bin_4.2.10+dfsg-0+deb8u1_i386.deb 5aa1253130bdaf29948118d1053f783b59d8ea03690bb6217be06012633cf802 351650 smbclient_4.2.10+dfsg-0+deb8u1_i386.deb 4194ad4990a2dbed690b460529310597cd96a3e5ef6e07f25ec7140cbfc0ead4 1672930 samba-testsuite_4.2.10+dfsg-0+deb8u1_i386.deb fc3a01a2a2292b5c6abd86cf2edf931027e8c5a1aabd9d38b0c626bdf4decccc 120858 registry-tools_4.2.10+dfsg-0+deb8u1_i386.deb 096060170476feb6d15149e47c63188b29d1e20a89231b3283771b76152a5cef 182022 libparse-pidl-perl_4.2.10+dfsg-0+deb8u1_i386.deb d07c8bf5fd881f3dfb58a36390a328f01e6478fe17f44252fe7935540daec210 332886 samba-dev_4.2.10+dfsg-0+deb8u1_i386.deb ddd2577caf038568aa5111982eefd334e2dff9acc3e825a51df15cdd4201c0d7 984228 python-samba_4.2.10+dfsg-0+deb8u1_i386.deb 8de8e20005b36192df578a337a93fc76c3b4c6a52f366c048afc56309cce1af0 321474 samba-dsdb-modules_4.2.10+dfsg-0+deb8u1_i386.deb 06aec2cb172aa628cc0eb773af0cde6b0641c2b9f6abf9a2a2532c1362623dfe 337848 samba-vfs-modules_4.2.10+dfsg-0+deb8u1_i386.deb 8dd30694212799c2998fe98b05a31ae84d5f48d8a56646b7d2938fdbae75c6cc 109472 libpam-smbpass_4.2.10+dfsg-0+deb8u1_i386.deb 396f38cef3f68849c2523861b97f1a24c16532e1eba05d58231fdf8c9ccecb56 147884 libsmbclient_4.2.10+dfsg-0+deb8u1_i386.deb da1dfd1abb55f87ff8d930f5ee29e6d5c09ff38d820674f2e7f1b6c0b54e5d24 131508 libsmbclient-dev_4.2.10+dfsg-0+deb8u1_i386.deb 9871e7a15946a47d8ac9822db644ccdce2133ed218d5f14216dfda31a2b6c2b3 527390 winbind_4.2.10+dfsg-0+deb8u1_i386.deb 9a964304979394a03e8167e31cfd1d174bc86ef0ffc9548a7c99ae376ebccd32 121690 libpam-winbind_4.2.10+dfsg-0+deb8u1_i386.deb 804b93354e55b292ee6728c7ca3da4559acd2360a7f3d8421ff02078b8984f40 105188 libnss-winbind_4.2.10+dfsg-0+deb8u1_i386.deb f72743094e5fabcaf1da0ad0f53b1ea581451896f14df143d60c0ff2829c7bff 22366578 samba-dbg_4.2.10+dfsg-0+deb8u1_i386.deb d50eb7ca1c9a6c91f94ac31d1cc949334692fae5dd9757d9eb04d9539eb8924d 121612 libwbclient0_4.2.10+dfsg-0+deb8u1_i386.deb fc6b840ce730078f36e4dca172dd1df90250d536ee4d0d335cbb329dd344b0ff 104200 libwbclient-dev_4.2.10+dfsg-0+deb8u1_i386.deb a885835caaad1f7ddd6b7661752f3d314252b473ffa146498bbad087906c10bc 526758 ctdb_4.2.10+dfsg-0+deb8u1_i386.deb Files: 37c24b3cf88ec32007760417af3a9c28 1998118 net optional samba_4.2.10+dfsg-0+deb8u1_i386.deb 5a55f4ed266d329f39b32fb224994be9 4493682 libs optional samba-libs_4.2.10+dfsg-0+deb8u1_i386.deb 813f499c64fb8eecf2cb9eff0fab0d97 646744 net optional samba-common-bin_4.2.10+dfsg-0+deb8u1_i386.deb 11ca40a25f2666155ffa40ea1ee54bfb 351650 net optional smbclient_4.2.10+dfsg-0+deb8u1_i386.deb 694fbfd19bcc9bbabd553d25ec3d6713 1672930 net optional samba-testsuite_4.2.10+dfsg-0+deb8u1_i386.deb a9107990f1bed7eaccbe3b2081d8b4cb 120858 net optional registry-tools_4.2.10+dfsg-0+deb8u1_i386.deb 0b92297d77b59a8c48f9ac75a5844ba4 182022 perl optional libparse-pidl-perl_4.2.10+dfsg-0+deb8u1_i386.deb 3dec9641979ff6b52a9fd89eca5b2baa 332886 devel optional samba-dev_4.2.10+dfsg-0+deb8u1_i386.deb 78de6a3c5dc13583304c864a51e569a8 984228 python optional python-samba_4.2.10+dfsg-0+deb8u1_i386.deb 7837784f983572524cf29f2bd578c14f 321474 libs optional samba-dsdb-modules_4.2.10+dfsg-0+deb8u1_i386.deb 04d75f200a873c23c4932e41fa3609b3 337848 net optional samba-vfs-modules_4.2.10+dfsg-0+deb8u1_i386.deb d43474974d285d00db4a442d7b8ead94 109472 admin extra libpam-smbpass_4.2.10+dfsg-0+deb8u1_i386.deb b03eda0eecbddbdbedfca521a992b378 147884 libs optional libsmbclient_4.2.10+dfsg-0+deb8u1_i386.deb b7711f0844925c2a8d304981e92a77fd 131508 libdevel extra libsmbclient-dev_4.2.10+dfsg-0+deb8u1_i386.deb 87e607c2ad38a724be9b4938b8fa136c 527390 net optional winbind_4.2.10+dfsg-0+deb8u1_i386.deb fda37756cf62e3c06369b82a8f5573e1 121690 net optional libpam-winbind_4.2.10+dfsg-0+deb8u1_i386.deb 5e206101c4900292b8f41d1d947243e8 105188 net optional libnss-winbind_4.2.10+dfsg-0+deb8u1_i386.deb f6be4bcb7bb01c893f981cc3072b3525 22366578 debug extra samba-dbg_4.2.10+dfsg-0+deb8u1_i386.deb 56fd045199464840d7bd884e879d0422 121612 libs optional libwbclient0_4.2.10+dfsg-0+deb8u1_i386.deb bd45453d19c8be22737a67e903768e46 104200 libdevel optional libwbclient-dev_4.2.10+dfsg-0+deb8u1_i386.deb 38fde6c8f32c1878fa377b88002fd1f0 526758 net optional ctdb_4.2.10+dfsg-0+deb8u1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXDSFBAAoJEDscxHymup8ZWMAQAK75eU8DN2k+CLeQJhbyjlBW H5xVHWz5N7+8dGPyrStPwtVQ+hEe6EQEPycYlBQ2+X4ONok13X/UL4qtsEINe6Il QohdL5LSkmKwIH8Rh65espOJIS9reffyF5BHqx+w1KBUvKOm+jhnhHLJUA99Fv8P t0kHFy+BCI3B7AlELi60pblZbAp1b/3qo2zd3MEned+HSf0pBy9Dlw6G6n7DrZyY JZjeaS+bnWgciDrdLTJMpSqmio96XV2nnz1d5ItN639Q7AmySW4um9Td88HfOAQF Ia5ZZnLj/17NAR1yAptylK+BRDdOW4IxqE/apr4XINZLoVGR0v517VVAnGM0gENc eQy+fq6mfDhi4b+Yw5bIQkKw/MbUJiasKQZjcYImlXw3wZQ8271bIkuLBNaq/WNp ZzdtIz+K630PtvbKU7QFTDg2HT084DGToB+WYC4WY7ySwDfz6c7dP08EVp6hCBup SEGfxy892Zj8hgthYMuKgJevn5B5cPRNMVMJahqN6LQyYyoxgq/3yi+wjQF4w69Q wuukY4LRu8tu3D8HdcpcV0vuV3janbeQQ/BjQvIVHRJJg+Z+IeiRSDYpY6fpXg1n QfAhFQejK+4jROKrVkMUcOsZWeld0p1qxcW3PRtHUZX6U2KeMlKKJG+Te1MKXUTH R27ywUtOXWRYVQ0ymmFO =MBWR -----END PGP SIGNATURE-----