[ubuntu/vivid-proposed] samba 2:4.1.11+dfsg-1ubuntu4 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Wed Jan 21 16:48:19 UTC 2015
samba (2:4.1.11+dfsg-1ubuntu4) vivid; urgency=medium
* SECURITY UPDATE: elevation of privilege to AD Domain Controller
- debian/patches/CVE-2014-8143.patch: check for extended access rights
before allowing changes to userAccountControl in
librpc/idl/security.idl, source4/auth/session.c,
source4/dsdb/common/util.c, source4/dsdb/pydsdb.c,
source4/dsdb/samdb/ldb_modules/samldb.c, source4/dsdb/samdb/samdb.h,
source4/rpc_server/lsa/dcesrv_lsa.c,
source4/setup/schema_samba4.ldif.
- CVE-2014-8143
Date: Wed, 21 Jan 2015 09:19:12 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/samba/2:4.1.11+dfsg-1ubuntu4
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Wed, 21 Jan 2015 09:19:12 -0500
Source: samba
Binary: samba samba-libs samba-common samba-common-bin smbclient samba-testsuite registry-tools libparse-pidl-perl samba-dev samba-doc python-samba samba-dsdb-modules samba-vfs-modules libpam-smbpass libsmbclient libsmbclient-dev libsmbsharemodes0 libsmbsharemodes-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev
Architecture: source
Version: 2:4.1.11+dfsg-1ubuntu4
Distribution: vivid
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
libnss-winbind - Samba nameservice integration plugins
libpam-smbpass - pluggable authentication module for Samba
libpam-winbind - Windows domain authentication integration plugin
libparse-pidl-perl - IDL compiler written in Perl
libsmbclient - shared library for communication with SMB/CIFS servers
libsmbclient-dev - development files for libsmbclient
libsmbsharemodes-dev - development files for libsmbsharemodes
libsmbsharemodes0 - shared library for non-samba access to the samba 'share modes' da
libwbclient-dev - Samba winbind client library - development files
libwbclient0 - Samba winbind client library
python-samba - Python bindings for Samba
registry-tools - tools for viewing and manipulating the Windows registry
samba - SMB/CIFS file, print, and login server for Unix
samba-common - common files used by both the Samba server and client
samba-common-bin - Samba common files used by both the server and the client
samba-dbg - Samba debugging symbols
samba-dev - tools for extending Samba
samba-doc - Samba documentation
samba-dsdb-modules - Samba Directory Services Database
samba-libs - Samba core libraries
samba-testsuite - test suite from Samba
samba-vfs-modules - Samba Virtual FileSystem plugins
smbclient - command-line SMB/CIFS clients for Unix
winbind - service to resolve user and group information from Windows NT ser
Changes:
samba (2:4.1.11+dfsg-1ubuntu4) vivid; urgency=medium
.
* SECURITY UPDATE: elevation of privilege to AD Domain Controller
- debian/patches/CVE-2014-8143.patch: check for extended access rights
before allowing changes to userAccountControl in
librpc/idl/security.idl, source4/auth/session.c,
source4/dsdb/common/util.c, source4/dsdb/pydsdb.c,
source4/dsdb/samdb/ldb_modules/samldb.c, source4/dsdb/samdb/samdb.h,
source4/rpc_server/lsa/dcesrv_lsa.c,
source4/setup/schema_samba4.ldif.
- CVE-2014-8143
Checksums-Sha1:
748dad0c4a3ad02444703a666f2a837135461391 4275 samba_4.1.11+dfsg-1ubuntu4.dsc
dadf9e8b8ace239bb069eeb6d20cc8cac409f420 221344 samba_4.1.11+dfsg-1ubuntu4.debian.tar.xz
Checksums-Sha256:
7ea46aba566c5a6d07b81cb64d83edfb9238cb154c9076d033f8637662607f3d 4275 samba_4.1.11+dfsg-1ubuntu4.dsc
107673fd423bca14c37b5f7f4897a8feae8a1de9b10269895971336f5e8f8645 221344 samba_4.1.11+dfsg-1ubuntu4.debian.tar.xz
Files:
0267317aee565ce0c6efea7e9310e42c 4275 net optional samba_4.1.11+dfsg-1ubuntu4.dsc
11e2de12a760a839318e59d31139935a 221344 net optional samba_4.1.11+dfsg-1ubuntu4.debian.tar.xz
Original-Maintainer: Debian Samba Maintainers <pkg-samba-maint at lists.alioth.debian.org>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1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=mIN7
-----END PGP SIGNATURE-----
More information about the Vivid-changes
mailing list