ubuntu/+source/samba:applied/debian/lenny

Last commit made on 2011-10-01
Get this branch:
git clone -b applied/debian/lenny https://git.launchpad.net/ubuntu/+source/samba
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
applied/debian/lenny
Repository:
lp:ubuntu/+source/samba

Recent commits

9a6a7b8... by Florian Weimer on 2011-08-04

Import patches-applied version 2:3.2.5-4lenny15 to applied/debian/lenny

Imported using git-ubuntu import.

Changelog parent: 083829b60204415e2fc7254c8d16efa902d309f3
Unapplied parent: 88f3c49775a4eda4a00885cc7c6837c8799c9bf6

New changelog entries:
  * Apply patches from Kai Blin to fix CVE-2011-2522, CVE-2011-2694
  * Security update, fixing the following issue:
    - CVE-2011-0719: denial of service by memory corruption

88f3c49... by Florian Weimer on 2011-08-04

Import patches-unapplied version 2:3.2.5-4lenny15 to debian/lenny

Imported using git-ubuntu import.

Changelog parent: 6749f63041cc02bf49879702546e7371210d7d87

New changelog entries:
  * Apply patches from Kai Blin to fix CVE-2011-2522, CVE-2011-2694
  * Security update, fixing the following issue:
    - CVE-2011-0719: denial of service by memory corruption

083829b... by Stefan Fritsch on 2010-09-15

Import patches-applied version 2:3.2.5-4lenny13 to applied/debian/lenny

Imported using git-ubuntu import.

Changelog parent: d5e19bfa8ec080137ec90a3b749649b4e823eec3
Unapplied parent: 6749f63041cc02bf49879702546e7371210d7d87

New changelog entries:
  [ Christian Perrier ]
  * Security update, fixing the following issue:
    - CVE-2019-3069: Buffer overrun vulnerability in sid_parse.
      Closes: #596891.
  * Security update, fix memory corruption vulnerability

6749f63... by Stefan Fritsch on 2010-09-15

Import patches-unapplied version 2:3.2.5-4lenny13 to debian/lenny

Imported using git-ubuntu import.

Changelog parent: fb02a4301b4979a290f8d137167d5a8a211e12ff

New changelog entries:
  [ Christian Perrier ]
  * Security update, fixing the following issue:
    - CVE-2019-3069: Buffer overrun vulnerability in sid_parse.
      Closes: #596891.
  * Security update, fix memory corruption vulnerability

d5e19bf... by Christian Perrier on 2010-04-09

Import patches-applied version 2:3.2.5-4lenny11 to applied/debian/lenny

Imported using git-ubuntu import.

Changelog parent: 47c4c91f64d166b83a7592922d83e7b3683efae3
Unapplied parent: fb02a4301b4979a290f8d137167d5a8a211e12ff

New changelog entries:
  * Fix memory leaks regarding trustdom passwords. Closes: #538819
  * Fix interdomain trust with w2k8r2 servers. This makes lenny's
    samba unusable in some situations. Closes: #575951
  * Security update, fixing the following issues in mount.cifs:
    - CVE-2009-3297: fix a race condition that allows an attacker with local
      access to mount remote filesystems over arbitrary mount points via
      a symlink attack. Closes: #567554.
    - CVE-2010-0547: fix a denial-of-service problem where a user can corrupt
      /etc/mtab, preventing further filesystem mounts and unmounts by other
      users. Closes: #568942.

fb02a43... by Christian Perrier on 2010-04-09

Import patches-unapplied version 2:3.2.5-4lenny11 to debian/lenny

Imported using git-ubuntu import.

Changelog parent: 1687c0b42c12cfcbc23e68ffde522dc35aad19e0

New changelog entries:
  * Fix memory leaks regarding trustdom passwords. Closes: #538819
  * Fix interdomain trust with w2k8r2 servers. This makes lenny's
    samba unusable in some situations. Closes: #575951
  * Security update, fixing the following issues in mount.cifs:
    - CVE-2009-3297: fix a race condition that allows an attacker with local
      access to mount remote filesystems over arbitrary mount points via
      a symlink attack. Closes: #567554.
    - CVE-2010-0547: fix a denial-of-service problem where a user can corrupt
      /etc/mtab, preventing further filesystem mounts and unmounts by other
      users. Closes: #568942.

47c4c91... by Christian Perrier on 2009-12-23

Import patches-applied version 2:3.2.5-4lenny8 to applied/debian/lenny

Imported using git-ubuntu import.

Changelog parent: af58e29941fdc57283a8131a3306c338444c8bd7
Unapplied parent: 1687c0b42c12cfcbc23e68ffde522dc35aad19e0

New changelog entries:
  * Fix regression in name mangling. Only short
    filenames were hashed, not long ones when using
    "mangling method = hash". Closes: #561545
  * Fix mangling of file or directory names that contain
    dots. This bug was revealed when fixing #561545
  * Security update. Fixes the following issues:
    - CVE-2009-2813: fix information leak with misconfigured
                     /etc/passwd file
    - CVE-2009-2906: remote DoS against smbd on authenticated
                     connections
    - CVE-2009-2948: information disclosure by setuid mount.cifs
  * Thanks to Nico Golde for helping with upstream patch backport
    for CVE-2009-2948 and CVE-2009-2906

1687c0b... by Christian Perrier on 2009-12-23

Import patches-unapplied version 2:3.2.5-4lenny8 to debian/lenny

Imported using git-ubuntu import.

Changelog parent: 7da56254f0fbc26fd2504f5795316e4bc0cbb2a3

New changelog entries:
  * Fix regression in name mangling. Only short
    filenames were hashed, not long ones when using
    "mangling method = hash". Closes: #561545
  * Fix mangling of file or directory names that contain
    dots. This bug was revealed when fixing #561545
  * Security update. Fixes the following issues:
    - CVE-2009-2813: fix information leak with misconfigured
                     /etc/passwd file
    - CVE-2009-2906: remote DoS against smbd on authenticated
                     connections
    - CVE-2009-2948: information disclosure by setuid mount.cifs
  * Thanks to Nico Golde for helping with upstream patch backport
    for CVE-2009-2948 and CVE-2009-2906

af58e29... by Christian Perrier on 2009-06-23

Import patches-applied version 2:3.2.5-4lenny6 to applied/debian/lenny

Imported using git-ubuntu import.

Changelog parent: a8659d314a3c2ee8cc5a8ebb0d1f4aedbc814611
Unapplied parent: 7da56254f0fbc26fd2504f5795316e4bc0cbb2a3

New changelog entries:
  * The former upload (2:3.2.5-4lenny5) was made to the wrong
    incoming directory and is therefore superseded by this one
  * CVE 2009-1886: Fix Formatstring vulnerability in smbclient
  * CVE 2009-1888: Fix uninitialized read of a data value
  * Fix Formatstring vulnerability in smbclient. CVE ID
    not assigned yet.
  * Fix Connect4 in samr.idl.
    This should allow Windows 2000 SP4 workstations to join a Samba
    domain. Closes: #526229
  * Have ldap_search_with_timeout() always returns LDAP_TIMELIMIT_EXCEEDED
    when OpenLDAP times out. THat fixes daily winbind crashes for users
    Closes: #522907
  * Fix memory leak in vfs_full_audit. Closes: #520794

7da5625... by Christian Perrier on 2009-06-23

Import patches-unapplied version 2:3.2.5-4lenny6 to debian/lenny

Imported using git-ubuntu import.

Changelog parent: 9b51269756bddf6c13aaf626035755ecf01f65a3

New changelog entries:
  * The former upload (2:3.2.5-4lenny5) was made to the wrong
    incoming directory and is therefore superseded by this one
  * CVE 2009-1886: Fix Formatstring vulnerability in smbclient
  * CVE 2009-1888: Fix uninitialized read of a data value
  * Fix Formatstring vulnerability in smbclient. CVE ID
    not assigned yet.
  * Fix Connect4 in samr.idl.
    This should allow Windows 2000 SP4 workstations to join a Samba
    domain. Closes: #526229
  * Have ldap_search_with_timeout() always returns LDAP_TIMELIMIT_EXCEEDED
    when OpenLDAP times out. THat fixes daily winbind crashes for users
    Closes: #522907
  * Fix memory leak in vfs_full_audit. Closes: #520794