samba 2:4.13.14+dfsg-1 source package in Debian

Changelog

samba (2:4.13.14+dfsg-1) unstable; urgency=high

  * New upstream security release in order to address the following defects:
    - CVE-2016-2124: don't fallback to non spnego authentication if we require
      kerberos
    - MS CVE-2020-17049 in Samba: 'Bronze bit' S4U2Proxy Constrained Delegation
      bypass
    - CVE-2020-25717: A user on the domain can become root on domain members
    - CVE-2020-25718: An RODC can issue (forge) administrator tickets to other
      servers
      + Bump build-depends ldb >= 2.2.3
    - CVE-2020-25719: AD DC Username based races when no PAC is given
    - CVE-2020-25721: Kerberos acceptors need easy access to stable AD
      identifiers (eg objectSid)
    - CVE-2020-25722: AD DC UPN vs samAccountName not checked (top-level bug
      for AD DC validation issues)
    - CVE-2021-3738: crash in dsdb stack
    - CVE-2021-23192: dcerpc requests don't check all fragments against the
      first auth_state
      + Update d/samba-libs.install for libdcerpc-pkt-auth.so.0
  * Add patch to fix "allow trusted domains"
  * Bump ldb build-depends to 2.2.3
  * Update d/samba-libs.install

 -- Mathieu Parent <email address hidden>  Tue, 09 Nov 2021 20:53:03 +0100

Upload details

Uploaded by:
Debian Samba Maintainers
Uploaded to:
Sid
Original maintainer:
Debian Samba Maintainers
Architectures:
any all
Section:
net
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
samba_4.13.14+dfsg-1.dsc 4.3 KiB 1e54362c3cf484b8eb22846149646d8710345e3188dc550510a47c468360569b
samba_4.13.14+dfsg.orig.tar.xz 11.3 MiB 5584cfe957fdb5217c220dbeeafc9013451a4c65c407a58cb76bebc7eed74d13
samba_4.13.14+dfsg-1.debian.tar.xz 242.5 KiB ebcd6df5246a541a0132fae67c77af0cc587183a64dcd85b51ca151aa708736e

No changes file available.

Binary packages built by this source