-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 08 Apr 2016 16:23:09 +1200 Source: samba Binary: samba samba-common-bin samba-common samba-tools smbclient swat samba-doc samba-doc-pdf libpam-smbpass libsmbclient libsmbclient-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev Architecture: armel Version: 2:3.6.6-6+deb7u8 Distribution: wheezy-security Urgency: high Maintainer: armel Build Daemon (arnold) Changed-By: Andrew Bartlett Description: libnss-winbind - Samba nameservice integration plugins libpam-smbpass - pluggable authentication module for Samba libpam-winbind - Windows domain authentication integration plugin libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient-dev - Samba winbind client library - development files libwbclient0 - Samba winbind client library samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - common files used by both the Samba server and client samba-dbg - Samba debugging symbols samba-doc - Samba documentation samba-doc-pdf - Samba documentation in PDF format samba-tools - Samba testing utilities smbclient - command-line SMB/CIFS clients for Unix swat - Samba Web Administration Tool winbind - Samba nameservice integration server Changes: samba (2:3.6.6-6+deb7u8) wheezy-security; urgency=high . * Security update + Fixes: - CVE-2015-5370 (Multiple errors in DCE-RPC code) - CVE-2016-2110 (Man in the middle attacks possible with NTLMSSP) - CVE-2016-2111 (NETLOGON Spoofing Vulnerability) - CVE-2016-2112 (LDAP client and server don't enforce integrity) - CVE-2016-2115 (SMB IPC traffic is not integrity protected) - CVE-2016-2118 (SAMR and LSA man in the middle attacks possible) + The Samba 3.6 patches have been backported by Andreas Schneider (Red Hat) and Ralph Böhme (SerNet). Thanks goes to Stefan Metzmacher for finding and fixing the CVEs in the first place. Thanks for the help with backporting to Günther Deschner (Red Hat) and Aurélien Aptel (SUSE). Checksums-Sha1: 9c01d5aacac27796617349b69915a7dc6e41e225 3362828 samba_3.6.6-6+deb7u8_armel.deb 9c9369b474ab71ec360af87a51d1567064d31862 2743358 samba-common-bin_3.6.6-6+deb7u8_armel.deb 77019ee76dbb748cf9dc502dd467ae906f637058 4198202 samba-tools_3.6.6-6+deb7u8_armel.deb 5c89389523e9689731410a2c1293df40d0eacf4e 4617866 smbclient_3.6.6-6+deb7u8_armel.deb 46ea67bb26d89b441ccbaa24db82979387127221 1496390 swat_3.6.6-6+deb7u8_armel.deb 1aaa79e236ebc40c782055ac7cfb36ee8f071705 596512 libpam-smbpass_3.6.6-6+deb7u8_armel.deb 3087a3b24b89fcea368c4b29fa651713c84780f9 1288834 libsmbclient_3.6.6-6+deb7u8_armel.deb be9abed65812131a33281f18a36b9d1916e87e52 1760756 libsmbclient-dev_3.6.6-6+deb7u8_armel.deb 2bf06a39d8729c4b352d61280b3360ce75f00d06 2144368 winbind_3.6.6-6+deb7u8_armel.deb 6ae31331562e65fd2e2b8d3881773eb11978cb61 98886 libpam-winbind_3.6.6-6+deb7u8_armel.deb d36d46406ebb2a45187c534872e2661ec849c6fc 491240 libnss-winbind_3.6.6-6+deb7u8_armel.deb 42953388c2d321a6b4e1ee26df45119343b31611 49272198 samba-dbg_3.6.6-6+deb7u8_armel.deb 5bb0c61e809077cf0a6b1c3874483cf3bef4da43 92710 libwbclient0_3.6.6-6+deb7u8_armel.deb bf6b920d295383e47aaf07697441edb115f7e2f3 84156 libwbclient-dev_3.6.6-6+deb7u8_armel.deb Checksums-Sha256: f0cd5e99c7712fd6f0a7db42feb5999efc32b9c67590e75150fb98a1d02f37fd 3362828 samba_3.6.6-6+deb7u8_armel.deb a9098f6ebdf5d496507bc860f7d51a57d072f9239765a0d2dcf17abaf52667e7 2743358 samba-common-bin_3.6.6-6+deb7u8_armel.deb 8206cbc7f42e3dfdb7408a580b60101ee0db1a19c590701195d97d740d2ac733 4198202 samba-tools_3.6.6-6+deb7u8_armel.deb 530c04522214d09e681c540801ad23d1eafaa4c48a61425041c8443689a206ca 4617866 smbclient_3.6.6-6+deb7u8_armel.deb ccd3d1b5e8482996bb7f1b52d4ad9ae9e866566124646f185c5a98a077ec9531 1496390 swat_3.6.6-6+deb7u8_armel.deb 4f1d39e9e970ccf96b15cddf0bcdd5dcb835732d20c341e4642a80550894ddec 596512 libpam-smbpass_3.6.6-6+deb7u8_armel.deb e73adef452abed6ee56a9e6dd1a625fbc8c63a40801b3f3fe9bcf0fd8d1e33b4 1288834 libsmbclient_3.6.6-6+deb7u8_armel.deb 9b35386cec9454a5eda1156ae5c028621e5e60c7dd9f88203f77a7a05f29385e 1760756 libsmbclient-dev_3.6.6-6+deb7u8_armel.deb f9166586b6430ce8ff7ba39c11a7a18db0108f0f6ba5cfeeeb0e7cbf893bade9 2144368 winbind_3.6.6-6+deb7u8_armel.deb fcf8bdc9a8c1828a6bef298c8ffb6c0e4d1ba3455a6ce12954a7c66efa8c9267 98886 libpam-winbind_3.6.6-6+deb7u8_armel.deb 5ee4e11499c5f01450fd9ac3232997c428f6d6cb98e4b0db21e3b56c156bf0e5 491240 libnss-winbind_3.6.6-6+deb7u8_armel.deb 4e17e3a91babbc652b239d7a07e96a31f545087dbd018b6b605746d76a2b59b4 49272198 samba-dbg_3.6.6-6+deb7u8_armel.deb 33991a50f9fe6805880052d963f0bba0694f9eee7daaad717aa1fbcb9eac31b0 92710 libwbclient0_3.6.6-6+deb7u8_armel.deb bdd39f706f68734cd5a6132fa378343e5b7eb037a0edcc1b240dd6bfc7279ebb 84156 libwbclient-dev_3.6.6-6+deb7u8_armel.deb Files: f69e6a39a8c359b52e6a8f16eec1e2f6 3362828 net optional samba_3.6.6-6+deb7u8_armel.deb 20548b334f76a59598015a253c7163b2 2743358 net optional samba-common-bin_3.6.6-6+deb7u8_armel.deb b87c49cd3ba4ac6b76d05b04ef3b1a20 4198202 net optional samba-tools_3.6.6-6+deb7u8_armel.deb d927d3b1dbc3015b557ba43b395627d6 4617866 net optional smbclient_3.6.6-6+deb7u8_armel.deb 98406c3fca9f1f5351e341522f90be36 1496390 net optional swat_3.6.6-6+deb7u8_armel.deb a4b539473cb4d0fe1641a311506ff902 596512 admin extra libpam-smbpass_3.6.6-6+deb7u8_armel.deb 93aa1e8755e5d5b61b512fba37e3915e 1288834 libs optional libsmbclient_3.6.6-6+deb7u8_armel.deb cc80ac09be49ee1f8dacc4814fba2472 1760756 libdevel extra libsmbclient-dev_3.6.6-6+deb7u8_armel.deb a790dd6910235101f0327f83a1ab51c7 2144368 net optional winbind_3.6.6-6+deb7u8_armel.deb ad920cacc754ad9f7e5e28fd2ea77337 98886 net optional libpam-winbind_3.6.6-6+deb7u8_armel.deb 01294b8f16c4653903c01aa9e32bb492 491240 net optional libnss-winbind_3.6.6-6+deb7u8_armel.deb bf7e54eb00057ad9b93b09a9ba65d160 49272198 debug extra samba-dbg_3.6.6-6+deb7u8_armel.deb d0c238084655d5f0b8a4c20d72d3996e 92710 libs optional libwbclient0_3.6.6-6+deb7u8_armel.deb 7a072093114c062fd4de93641bc2c127 84156 libdevel optional libwbclient-dev_3.6.6-6+deb7u8_armel.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXDRtpAAoJENBm/icq5fs0p3YP/idPQ8wxvHimK2kvI8bKk1m7 NN0e0tipreRuou8Lz4B2RZ3VmqAoWapPUSQHDpR3hdxro9hpCshb+ghmdvi+DveO /viPGMVH0MYbKShk466gBhXN8BywSdBToGCdWuVMqJFqYMkz0oiY+LkhTyti5eSX Fob2QD63G7Z2RBLVhJDV2pFmhmrCpx0n0Mwp31P7VMW67dUM8nPeCT4EPyxQ5DCf T0B5tWK92jZdq+VO5p60FtajLSt8+7KHiVF/EDb8IDwFJpp2wRJbVzHYblpVp2fn bgTxgyAxLV9wNdCETGlhkjNqIp5w8xGrxA21zGYxLLUocm8t+eQ44WZNh67ZYYli PDP6D7rKnPAPibZcv2TIi9GGudrAYyhZEMXW7M2PiVc7uZUSC9lFw6Z7h1A+X7L1 UMjWChbOv9x0bTN3xfUkzlpwSa4dj4oz1NQQnHLYE5J/ntu4oXVAGKL7ZEuVXn91 OahBMp1FsQ/m1z5yXMeG82sIqu0edcYkvIqHQKVhFaY+9qABNX5yDM618iG4VyvG f5FXIWsNLzbsV1fGbZRKQ2SD+aY319rCJEYYRE6ZUxgqkZWmVPdebGamdErJCxks 6MZwJv0Z+am2HG20lN6vewU69UUE4mQSCQxo7TaXJH+kvloyXiZjs8ioDeBMNRwW KSbn2ziJ5/LmBGsfEni1 =Ft37 -----END PGP SIGNATURE-----