ubuntu/+source/samba:ubuntu/cosmic-security

Last commit made on 2019-05-14
Get this branch:
git clone -b ubuntu/cosmic-security https://git.launchpad.net/ubuntu/+source/samba
Members of Ubuntu Server Dev import team can upload to this branch. Log in for directions.

Branch merges

Branch information

Name:
ubuntu/cosmic-security
Repository:
lp:ubuntu/+source/samba

Recent commits

bb9c4ed... by Marc Deslauriers on 2019-05-08

Import patches-unapplied version 2:4.8.4+dfsg-2ubuntu2.4 to ubuntu/cosmic-security

Imported using git-ubuntu import.

Changelog parent: 4c4ad488e6b9cb0e1accb95038fceaeab6467905

New changelog entries:
  * SECURITY UPDATE: Samba AD DC S4U2Self/S4U2Proxy unkeyed checksum
    - debian/patches/CVE-2018-16860-1.patch: add test for S4U2Self with
      unkeyed checksum in selftest/knownfail.d/mitm-s4u2self,
      source4/torture/krb5/kdc-canon-heimdal.c.
    - debian/patches/CVE-2018-16860-2.patch: reject PA-S4U2Self with
      unkeyed checksum in selftest/knownfail.d/mitm-s4u2self,
      source4/heimdal/kdc/krb5tgs.c.
    - CVE-2018-16860

4c4ad48... by Marc Deslauriers on 2019-04-04

Import patches-unapplied version 2:4.8.4+dfsg-2ubuntu2.3 to ubuntu/cosmic-security

Imported using git-ubuntu import.

Changelog parent: 329ce6fc4a94ac3001ca1bab934201169160cb8c

New changelog entries:
  * SECURITY UPDATE: save registry file outside share as unprivileged user
    - debian/patches/CVE-2019-3880.patch: remove implementations of
      SaveKey/RestoreKey in source3/rpc_server/winreg/srv_winreg_nt.c.
    - CVE-2019-3880

329ce6f... by Andreas Hasenack on 2019-03-29

Import patches-unapplied version 2:4.8.4+dfsg-2ubuntu2.2 to ubuntu/cosmic-proposed

Imported using git-ubuntu import.

Upload parent: 8a2846583c8e402ca2782c2211d435e4b4821969

8a28465... by Andreas Hasenack on 2019-03-29

changelog

2e177f6... by Andreas Hasenack on 2019-03-29

    - d/libsmbclient.symbols: add smbc_setOptionProtocols

f2ed79d... by Andreas Hasenack on 2019-03-27

  * Backport function to set protocol levels (LP: #1778322):
    - d/p/add-smbc_setOptionProtocols.patch: add function to set protocol
      levels

eb35491... by Marc Deslauriers on 2018-11-16

Import patches-unapplied version 2:4.8.4+dfsg-2ubuntu2.1 to ubuntu/cosmic-security

Imported using git-ubuntu import.

Changelog parent: 75f0760eebf274df86a79ac20747c0b11c245b5b

New changelog entries:
  * SECURITY UPDATE: Unprivileged adding of CNAME record causing loop in AD
    Internal DNS server
    - debian/patches/CVE-2018-14629.patch: add CNAME loop prevention using
      counter in python/samba/tests/dns.py, selftest/knownfail.d/dns,
      source4/dns_server/dns_query.c.
    - CVE-2018-14629
  * SECURITY UPDATE: Double-free in Samba AD DC KDC with PKINIT
    - debian/patches/CVE-2018-16841-1.patch: fix segfault on PKINIT with
      mis-matching principal in source4/kdc/db-glue.c.
    - debian/patches/CVE-2018-16841-2.patch: check for mismatching
      principal in testprogs/blackbox/test_pkinit_heimdal.sh.
    - CVE-2018-16841
  * SECURITY UPDATE: NULL pointer de-reference in Samba AD DC LDAP server
    - debian/patches/CVE-2018-16851.patch: check ret before manipulating
      blob in source4/ldap_server/ldap_server.c.
    - CVE-2018-16851

75f0760... by Andreas Hasenack on 2018-10-09

Import patches-unapplied version 2:4.8.4+dfsg-2ubuntu2 to ubuntu/cosmic-proposed

Imported using git-ubuntu import.

Upload parent: ce0fe6a620fc88cb9b138fec72218137e70db2eb

ce0fe6a... by Karl Stenerud on 2018-10-04

changelog

ad436bd... by Karl Stenerud on 2018-10-04

  * d/p/fix-rmdir.patch: Fix to make smbclient report directory-not-empty
    errors (LP: 1795772)