[Pkg-samba-maint] Bug#1001068: samba: Missing upstream commit 0a546be0 on bullseye, bookworm and sid (part of CVE-2020-25717)

Salvatore Bonaccorso carnil at debian.org
Tue May 3 20:15:23 BST 2022


Hi Paul,

On Tue, May 03, 2022 at 09:05:34PM +0200, Paul Gevers wrote:
> Dear all,
> 
> On Fri, 03 Dec 2021 15:44:02 +0100 =?utf-8?q?J=C3=B6rg_Behrmann?=
> <behrmann at physik.fu-berlin.de> wrote:
> > The upstream samba commit 0a546be0 is included in the buster security release
> > 2:4.9.5+dfsg-5+deb10u2 via the patch file bug-14901-v4-9.patch, but is missing
> > in the bullseye security release 2:4.13.13+dfsg-1~deb11u2.
> 
> This bug shows up in the list of RC bugs for bookworm, because according to
> the fixed versions, it still applies to unstable and testing. I *assume*
> this has been fixed in the mean time in unstable. It would be great if
> somebody could confirm that, ideally with the appropriate "Control: -1 fixed
> ....." line at the start of the mail.

Right, the upstream commit in question is included in 4.16.0 upstream,
so added an additional fixed version to the bug.

Regards,
Salvatore



More information about the Pkg-samba-maint mailing list