[Pkg-samba-maint] [samba] branch stretch-security created (now 612c590)
Mathieu Parent
sathieu at moszumanska.debian.org
Thu Sep 21 07:26:00 UTC 2017
This is an automated email from the git hooks/post-receive script.
sathieu pushed a change to branch stretch-security
in repository samba.
at 612c590 Release 2:4.5.8+dfsg-2+deb9u2
This branch includes the following new commits:
new cea68b6 Patches for CVE-2017-12150, CVE-2017-12151 and CVE-2017-12163
new 34f93fc Adapt patches to 4.5.8
new 29a501b CVE-2017-12150: s3:lib: get_cmdline_auth_info_signing_state smb_encrypt SMB_SIGNING_REQUIRED
new 354e226 CVE-2017-12150: s3:pylibsmb: make use of SMB_SIGNING_DEFAULT for 'samba.samba3.libsmb_samba_internal'
new a85975e CVE-2017-12150: libgpo: make use of SMB_SIGNING_REQUIRED in gpo_connect_server()
new 27701be CVE-2017-12150: auth/credentials: cli_credentials_authentication_requested() should check for NTLM_CCACHE/SIGN/SEAL
new ee72f46 CVE-2017-12150: libcli/smb: add smbXcli_conn_signing_mandatory()
new 58ea302 CVE-2017-12150: s3:libsmb: only fallback to anonymous if authentication was not requested
new 38c98c7 CVE-2017-12151: s3:libsmb: add cli_state_is_encryption_on() helper function
new 17b3e3a CVE-2017-12151: s3:libsmb: make use of cli_state_is_encryption_on()
new 3f357e4 CVE-2017-12163: s3:smbd: Prevent client short SMB1 write from writing server memory to file.
new 612c590 Release 2:4.5.8+dfsg-2+deb9u2
The 12 revisions listed above as "new" are entirely new to this
repository and will be described in separate emails. The revisions
listed as "adds" were already present in the repository and have only
been added to this reference.
--
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-samba/samba.git
More information about the Pkg-samba-maint
mailing list