[Pkg-samba-maint] [samba] branch stretch-security created (now 612c590)

Mathieu Parent sathieu at moszumanska.debian.org
Thu Sep 21 07:26:00 UTC 2017


This is an automated email from the git hooks/post-receive script.

sathieu pushed a change to branch stretch-security
in repository samba.

        at  612c590   Release 2:4.5.8+dfsg-2+deb9u2

This branch includes the following new commits:

       new  cea68b6   Patches for CVE-2017-12150, CVE-2017-12151 and CVE-2017-12163
       new  34f93fc   Adapt patches to 4.5.8
       new  29a501b   CVE-2017-12150: s3:lib: get_cmdline_auth_info_signing_state smb_encrypt SMB_SIGNING_REQUIRED
       new  354e226   CVE-2017-12150: s3:pylibsmb: make use of SMB_SIGNING_DEFAULT for 'samba.samba3.libsmb_samba_internal'
       new  a85975e   CVE-2017-12150: libgpo: make use of SMB_SIGNING_REQUIRED in gpo_connect_server()
       new  27701be   CVE-2017-12150: auth/credentials: cli_credentials_authentication_requested() should check for NTLM_CCACHE/SIGN/SEAL
       new  ee72f46   CVE-2017-12150: libcli/smb: add smbXcli_conn_signing_mandatory()
       new  58ea302   CVE-2017-12150: s3:libsmb: only fallback to anonymous if authentication was not requested
       new  38c98c7   CVE-2017-12151: s3:libsmb: add cli_state_is_encryption_on() helper function
       new  17b3e3a   CVE-2017-12151: s3:libsmb: make use of cli_state_is_encryption_on()
       new  3f357e4   CVE-2017-12163: s3:smbd: Prevent client short SMB1 write from writing server memory to file.
       new  612c590   Release 2:4.5.8+dfsg-2+deb9u2

The 12 revisions listed above as "new" are entirely new to this
repository and will be described in separate emails.  The revisions
listed as "adds" were already present in the repository and have only
been added to this reference.


-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-samba/samba.git




More information about the Pkg-samba-maint mailing list