pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: [pkgsrc-2023Q2] pkgsrc/net/samba4



Module Name:    pkgsrc
Committed By:   bsiegert
Date:           Tue Aug 15 18:21:21 UTC 2023

Modified Files:
        pkgsrc/net/samba4 [pkgsrc-2023Q2]: Makefile distinfo

Log Message:
Pullup ticket #6782 - requested by taca
net/samba4: security fix

Revisions pulled up:
- net/samba4/Makefile                                           1.166-1.167
- net/samba4/distinfo                                           1.94-1.95

---
   Module Name: pkgsrc
   Committed By:        wiz
   Date:                Wed Jul 19 15:33:28 UTC 2023

   Modified Files:
        pkgsrc/net/samba4: Makefile distinfo

   Log Message:
   samba: update to 4.18.4.

   Changes since 4.18.3
   --------------------

   o  Douglas Bagnall <douglas.bagnall%catalyst.net.nz@localhost>
     * BUG 15404: Backport --pidl-developer fixes.

   o  Samuel Cabrero <scabrero%samba.org@localhost>
     * BUG 14030: Named crashes on DLZ zone update.

   o  Björn Jacke <bj%sernet.de@localhost>
     * BUG 2312: smbcacls and smbcquotas do not check // before the server.

   o  Volker Lendecke <vl%samba.org@localhost>
     * BUG 15382: cli_list loops 100% CPU against pre-lanman2 servers.
     * BUG 15391: smbclient leaks fds with showacls.
     * BUG 15402: smbd returns NOT_FOUND when creating files on a r/o filesystem.

   o  Stefan Metzmacher <metze%samba.org@localhost>
     * BUG 15355: NSS_WRAPPER_HOSTNAME doesn't match NSS_WRAPPER_HOSTS entry and
       causes test timeouts.

   o  Noel Power <noel.power%suse.com@localhost>
     * BUG 15384: net ads lookup (with unspecified realm) fails.

   o  Christof Schmitt <cs%samba.org@localhost>
     * BUG 15381: Register Samba processes with GPFS.

   o  Andreas Schneider <asn%samba.org@localhost>
     * BUG 15390: Python tarfile extraction needs change to avoid a warning
       (CVE-2007-4559 mitigation).
     * BUG 15398: The winbind child segfaults when listing users with `winbind
       scan trusted domains = yes`.

   o  Jones Syue <jonessyue%qnap.com@localhost>
     * BUG 15383: Remove comments about deprecated 'write cache size'.
     * BUG 15403: smbget memory leak if failed to download files recursively.

---
   Module Name: pkgsrc
   Committed By:        taca
   Date:                Thu Jul 20 01:28:34 UTC 2023

   Modified Files:
        pkgsrc/net/samba4: Makefile distinfo

   Log Message:
   net/samba4: update to 4.18.5

                     ==============================
                     Release Notes for Samba 4.18.5
                             July 19, 2023
                     ==============================

   This is a security release in order to address the following defects:

   o CVE-2022-2127:  When winbind is used for NTLM authentication, a maliciously
                    crafted request can trigger an out-of-bounds read in winbind
                    and possibly crash it.
                    https://www.samba.org/samba/security/CVE-2022-2127.html

   o CVE-2023-3347:  SMB2 packet signing is not enforced if an admin configured
                    "server signing = required" or for SMB2 connections to Domain
                    Controllers where SMB2 packet signing is mandatory.
                    https://www.samba.org/samba/security/CVE-2023-3347.html

   o CVE-2023-34966: An infinite loop bug in Samba's mdssvc RPC service for
                    Spotlight can be triggered by an unauthenticated attacker by
                    issuing a malformed RPC request.
                    https://www.samba.org/samba/security/CVE-2023-34966.html

   o CVE-2023-34967: Missing type validation in Samba's mdssvc RPC service for
                    Spotlight can be used by an unauthenticated attacker to
                    trigger a process crash in a shared RPC mdssvc worker process.
                    https://www.samba.org/samba/security/CVE-2023-34967.html

   o CVE-2023-34968: As part of the Spotlight protocol Samba discloses the server-
                    side absolute path of shares and files and directories in
                    search results.
                    https://www.samba.org/samba/security/CVE-2023-34968.html

   Changes since 4.18.4
   --------------------

   o  Ralph Boehme <slow%samba.org@localhost>
     * BUG 15072: CVE-2022-2127.
     * BUG 15340: CVE-2023-34966.
     * BUG 15341: CVE-2023-34967.
     * BUG 15388: CVE-2023-34968.
     * BUG 15397: CVE-2023-3347.

   o  Volker Lendecke <vl%samba.org@localhost>
     * BUG 15072: CVE-2022-2127.

   o  Stefan Metzmacher <metze%samba.org@localhost>
     * BUG 15418: Secure channel faulty since Windows 10/11 update 07/2023.


To generate a diff of this commit:
cvs rdiff -u -r1.165 -r1.165.2.1 pkgsrc/net/samba4/Makefile
cvs rdiff -u -r1.93 -r1.93.2.1 pkgsrc/net/samba4/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Modified files:

Index: pkgsrc/net/samba4/Makefile
diff -u pkgsrc/net/samba4/Makefile:1.165 pkgsrc/net/samba4/Makefile:1.165.2.1
--- pkgsrc/net/samba4/Makefile:1.165    Fri Jun 16 21:40:12 2023
+++ pkgsrc/net/samba4/Makefile  Tue Aug 15 18:21:21 2023
@@ -1,6 +1,6 @@
-# $NetBSD: Makefile,v 1.165 2023/06/16 21:40:12 wiz Exp $
+# $NetBSD: Makefile,v 1.165.2.1 2023/08/15 18:21:21 bsiegert Exp $
 
-DISTNAME=      samba-4.18.3
+DISTNAME=      samba-4.18.5
 CATEGORIES=    net
 MASTER_SITES=  https://download.samba.org/pub/samba/stable/
 

Index: pkgsrc/net/samba4/distinfo
diff -u pkgsrc/net/samba4/distinfo:1.93 pkgsrc/net/samba4/distinfo:1.93.2.1
--- pkgsrc/net/samba4/distinfo:1.93     Fri Jun 16 21:40:12 2023
+++ pkgsrc/net/samba4/distinfo  Tue Aug 15 18:21:21 2023
@@ -1,8 +1,8 @@
-$NetBSD: distinfo,v 1.93 2023/06/16 21:40:12 wiz Exp $
+$NetBSD: distinfo,v 1.93.2.1 2023/08/15 18:21:21 bsiegert Exp $
 
-BLAKE2s (samba-4.18.3.tar.gz) = 5cbceef6c02cbedfc24d0e74e09473a716873d1394375163a4def7a4014b78af
-SHA512 (samba-4.18.3.tar.gz) = b0980291ca124641bd03ba51d4b4e2e492facb3939f8edf491133be83a82beed66f68f00442cb02c211a9e76eb6ba08387136e30eb7df756c3c90c76034689c4
-Size (samba-4.18.3.tar.gz) = 41294739 bytes
+BLAKE2s (samba-4.18.5.tar.gz) = e7b9c7cf8adbe2c42e21d416aff8a18e7c11bcf458cc16d45747b104ed478edb
+SHA512 (samba-4.18.5.tar.gz) = c12b7cd7aba0941bf178c89604f926347bee4f5bb6ea651930cc93bcd8a2cfa983b1f10a0ccb55f99c5b34b9f158d1059d06d7f39f7bc261c7dd0d8c89c5a6f5
+Size (samba-4.18.5.tar.gz) = 41315373 bytes
 SHA1 (patch-buildtools_wafsamba_samba__conftests.py) = d927db17124d2bb5b382885e70a41f84c3929926
 SHA1 (patch-buildtools_wafsamba_samba__install.py) = d801340617da325e3bb70a90350e45cc8e383c2d
 SHA1 (patch-buildtools_wafsamba_samba__pidl.py) = e4c0ed3dacfcf5613a5b397b3c6cf88509497da7



Home | Main Index | Thread Index | Old Index