-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 08 Apr 2016 16:23:09 +1200 Source: samba Binary: samba samba-common-bin samba-common samba-tools smbclient swat samba-doc samba-doc-pdf libpam-smbpass libsmbclient libsmbclient-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev Architecture: i386 Version: 2:3.6.6-6+deb7u8 Distribution: wheezy-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Andrew Bartlett Description: libnss-winbind - Samba nameservice integration plugins libpam-smbpass - pluggable authentication module for Samba libpam-winbind - Windows domain authentication integration plugin libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient-dev - Samba winbind client library - development files libwbclient0 - Samba winbind client library samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - common files used by both the Samba server and client samba-dbg - Samba debugging symbols samba-doc - Samba documentation samba-doc-pdf - Samba documentation in PDF format samba-tools - Samba testing utilities smbclient - command-line SMB/CIFS clients for Unix swat - Samba Web Administration Tool winbind - Samba nameservice integration server Changes: samba (2:3.6.6-6+deb7u8) wheezy-security; urgency=high . * Security update + Fixes: - CVE-2015-5370 (Multiple errors in DCE-RPC code) - CVE-2016-2110 (Man in the middle attacks possible with NTLMSSP) - CVE-2016-2111 (NETLOGON Spoofing Vulnerability) - CVE-2016-2112 (LDAP client and server don't enforce integrity) - CVE-2016-2115 (SMB IPC traffic is not integrity protected) - CVE-2016-2118 (SAMR and LSA man in the middle attacks possible) + The Samba 3.6 patches have been backported by Andreas Schneider (Red Hat) and Ralph Böhme (SerNet). Thanks goes to Stefan Metzmacher for finding and fixing the CVEs in the first place. Thanks for the help with backporting to Günther Deschner (Red Hat) and Aurélien Aptel (SUSE). Checksums-Sha1: 38daf8b62ec09ac3e576a98c5b18c4bafb178f4c 4339212 samba_3.6.6-6+deb7u8_i386.deb 15f9b38c49dab35cbb402198274ac393735d8801 3810188 samba-common-bin_3.6.6-6+deb7u8_i386.deb 3532479cec6e14bde12e3bd092833b455c835c49 5482766 samba-tools_3.6.6-6+deb7u8_i386.deb e5ba367932716dc555378eaa7ef7b9f7b45a5b74 5909874 smbclient_3.6.6-6+deb7u8_i386.deb 6514c3060bc0ad1cf19d27e36209ae440eaca0a2 1753366 swat_3.6.6-6+deb7u8_i386.deb d88c0aea3ac838b8af563118a5551343e7107a7e 703040 libpam-smbpass_3.6.6-6+deb7u8_i386.deb 83c378da3edb2729c3e77e754c7194e841f2dd47 1547012 libsmbclient_3.6.6-6+deb7u8_i386.deb a6ba29d8fa15a696ee848b7fb55a2c8a956a5d46 1917126 libsmbclient-dev_3.6.6-6+deb7u8_i386.deb f0bc4df0ef21950113cddf0db87fd0f145898d18 2603302 winbind_3.6.6-6+deb7u8_i386.deb c58f3fbd293356ea34dadd1f148f1aadd8d319bd 103772 libpam-winbind_3.6.6-6+deb7u8_i386.deb 67c1105a9acac44eda20144c141f80a634ef6b96 577458 libnss-winbind_3.6.6-6+deb7u8_i386.deb 79545d1e52d7f45e7027194d68aefd09a45d211b 67346870 samba-dbg_3.6.6-6+deb7u8_i386.deb 6b88b3ed48924b88aefb59bd0324b81a64df4b39 97126 libwbclient0_3.6.6-6+deb7u8_i386.deb 112e47893c789aba607b66994329dfa5ab509f45 84168 libwbclient-dev_3.6.6-6+deb7u8_i386.deb Checksums-Sha256: 5c4d9a4d9406ad0e96a507df0371c3a691f5753e457d5e6c795079d7d807fe2c 4339212 samba_3.6.6-6+deb7u8_i386.deb 96a77236a9661d21aecb191d43fce68710836b92aa4beec4dcc2e7b85411ba26 3810188 samba-common-bin_3.6.6-6+deb7u8_i386.deb 8a568464544e94214a364ce0d4d496ae0b40c3e8e9474126bebe037ffd8f65ea 5482766 samba-tools_3.6.6-6+deb7u8_i386.deb 6250ef75e17164c8e276a4b9c86ed2c73a46d2a5ee0cf7d5b3dcbb9a1f7d96b4 5909874 smbclient_3.6.6-6+deb7u8_i386.deb 23a5a833faba2cc7e182edec4371b6e43cb34ffa6a478a26c834c4a582e62f6d 1753366 swat_3.6.6-6+deb7u8_i386.deb d8df00e25965465e663df2baf4d86591a90af436695397b90b0f6f9e226544d0 703040 libpam-smbpass_3.6.6-6+deb7u8_i386.deb 34e436fe5b3cdaf35083d7d2c19ad1921687b45d79eee2950f1ca01df2df3077 1547012 libsmbclient_3.6.6-6+deb7u8_i386.deb 5d1fb573dd12ae88d38e6cd3cac26bc2d1fa36f6e508d1ba4c61061420bb9395 1917126 libsmbclient-dev_3.6.6-6+deb7u8_i386.deb 1c6bc914bf530ff0938df14009825b3921fddd4ad7d365add3832419cc9a0121 2603302 winbind_3.6.6-6+deb7u8_i386.deb 1107b8adbd9b02eb131118adf1fb309a23dc06f968af30a5534c4f5b19c568a6 103772 libpam-winbind_3.6.6-6+deb7u8_i386.deb 1239ecf5424ce9425bbf01e21545ef1382bbd96b4c8bc25506f029d16d8d8bf1 577458 libnss-winbind_3.6.6-6+deb7u8_i386.deb 1202f0220e5fcbabb0d64f6d855da58c3dbbd6bc0ffd74e7272a8962174d68aa 67346870 samba-dbg_3.6.6-6+deb7u8_i386.deb 9e40be8c59cd4c2038befa847962af4bdb3c73fcbd158627426c1860ab06bc4a 97126 libwbclient0_3.6.6-6+deb7u8_i386.deb 3bcd94fbceae3e430d4d3fdd9f9e1333cbda93b3538c75bede723ddfe493f692 84168 libwbclient-dev_3.6.6-6+deb7u8_i386.deb Files: cdcbb0df1da5f30892a73d91d085bcc7 4339212 net optional samba_3.6.6-6+deb7u8_i386.deb 592353973e651ff261803d4947f49df2 3810188 net optional samba-common-bin_3.6.6-6+deb7u8_i386.deb e9be2069d93fa5391fddc474458ec0ca 5482766 net optional samba-tools_3.6.6-6+deb7u8_i386.deb 7a4f36bb3468e38136491e0a779ceb25 5909874 net optional smbclient_3.6.6-6+deb7u8_i386.deb 2a271eb1867c91334adc77119dc5a975 1753366 net optional swat_3.6.6-6+deb7u8_i386.deb 88e2476c47f17649549eeeff9e9b945f 703040 admin extra libpam-smbpass_3.6.6-6+deb7u8_i386.deb 0e7cac3326e7d5d2fc9450606ec1e8fc 1547012 libs optional libsmbclient_3.6.6-6+deb7u8_i386.deb 862400209c0a40b7dbe5e3d76ffb4b81 1917126 libdevel extra libsmbclient-dev_3.6.6-6+deb7u8_i386.deb 2db396b13fa4265b9e90e902a02f626f 2603302 net optional winbind_3.6.6-6+deb7u8_i386.deb fb5eedbfcff9fe91339e9939025ce8e1 103772 net optional libpam-winbind_3.6.6-6+deb7u8_i386.deb 3c0228463552c611cd06e8e3c2850dd2 577458 net optional libnss-winbind_3.6.6-6+deb7u8_i386.deb 90c1cd8dc92f009842c8476df7e6167b 67346870 debug extra samba-dbg_3.6.6-6+deb7u8_i386.deb b78ef8f7c6a2882930d5f8f7a6a83545 97126 libs optional libwbclient0_3.6.6-6+deb7u8_i386.deb 401b80ddaddc2f6a5cd5ed7a81fcdda2 84168 libdevel optional libwbclient-dev_3.6.6-6+deb7u8_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIcBAEBCgAGBQJXDRVMAAoJEIk4rQGIRk2Ll0UP/39TckShEhTRoJEJpoDZMAkb aMlFtKbKX95GnS2TAzaT+7N/n371d3W0Aja/uHzX/hsqYvrTNj4AOOwJGc9dfs3l oCtJXR5gcTWb3yP/6NhMf43sLvU3w3gEh6D/9E3Kf39VO/Cz6KdHrMw/s5aryvCE gpG9gsnbutJ/LFc0BO3f22ZfIdiFzrj4gvBB2vXhk1nSxKWRzrlaYrD3JKcKzOOd stvVuHX17/geSYx9No3t/lg0pp8G8Nd7SMKJHlTnZfqcvzgGZyrBZX3Z/pKZNlIW efx/aDnZB9uxzBGlDqbXs7Can8QAptZTEA7ohwRT9Rwkw0SM3TrIA84Z3rCQPPZ/ XXStKxJBqQgOkS/aDMS25Gq/W4e4cDOwJTK4t24zhyr38TBKR8Dc0pnUrjcjISzi 3zdg031v+6V5447fIPDd+8/A+bQ6Mdzow+i0lasFH3TScNbFDtY1CBgpS+ogXeji Ex4o1nn0Lj97km6V5so6qHO6TE9ViGu17xdHp+KvDPM31YoCG1vpuPgbODQBWZi0 +k0PKd9u9Mm4cNPYiuRtwBPeWvxdBAgrUNDGA8G57QofUyagD6ANp1izuuvyylRW OH8r6OSBtXRi85jZLawQoRkHL1nJLf8VM48yOCr7kG7GK7s1/vAOlw5NMcWJYJG+ mm5ePMpiLhBflwlWhUIC =vxsv -----END PGP SIGNATURE-----