Format: 1.8 Date: Mon, 09 Dec 2013 10:32:37 -0500 Source: samba Binary: samba samba-common-bin samba-common samba-tools smbclient swat samba-doc samba-doc-pdf libpam-smbpass libsmbclient libsmbclient-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev Architecture: amd64 amd64_translations Version: 2:3.6.9-1ubuntu1.2 Distribution: raring Urgency: low Maintainer: Ubuntu/amd64 Build Daemon Changed-By: Marc Deslauriers Description: libnss-winbind - Samba nameservice integration plugins libpam-smbpass - pluggable authentication module for Samba libpam-winbind - Windows domain authentication integration plugin libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient-dev - Samba winbind client library - development files libwbclient0 - Samba winbind client library samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - common files used by both the Samba server and client samba-dbg - Samba debugging symbols samba-doc - Samba documentation samba-doc-pdf - Samba documentation in PDF format samba-tools - Samba testing utilities smbclient - command-line SMB/CIFS clients for Unix swat - Samba Web Administration Tool winbind - Samba nameservice integration server Changes: samba (2:3.6.9-1ubuntu1.2) raring-security; urgency=low . * SECURITY UPDATE: file restrictions bypass via alternate data streams - debian/patches/CVE-2013-4475.patch: properly check base file access in source3/smbd/open.c. - CVE-2013-4475 * SECURITY UPDATE: pam_winbind access restriction bypass via invalid group names - debian/patches/CVE-2012-6150.patch: ensure valid groups in nsswitch/pam_winbind.c. - CVE-2012-6150 * SECURITY UPDATE: arbitrary code execution via incorrect DCE-RPC fragment length field checking - debian/patches/CVE-2013-4408.patch: apply massive upstream fix to lib/async_req/async_sock.c, libcli/util/tstream.c, librpc/idl/dcerpc.idl, librpc/rpc/dcerpc_util.c, librpc/rpc/rpc_common.h, nsswitch/libwbclient/wbc_sid.c, nsswitch/wbinfo.c, source3/lib/netapi/{group,localgroup,user}.c, source3/lib/util_tsock.c, source3/libnet/libnet_join.c, source3/librpc/rpc/dcerpc_helpers.c, source3/rpc_client/{cli_lsarpc,cli_pipe}.c, source3/rpc_server/netlogon/srv_netlog_nt.c, source3/rpcclient/{cmd_lsarpc,cmd_samr}.c, source3/smbd/lanman.c, source3/utils/net_rpc.c, source3/utils/net_rpc_join.c, source3/winbindd/{wb_lookupsids,winbindd_msrpc,winbindd_rpc}.c, source4/libcli/util/clilsa.c, source4/libnet/{groupinfo,groupman, libnet_join,libnet_lookup,libnet_passwd,userinfo,userman}.c, source4/librpc/rpc/{dcerpc,dcerpc_smb,dcerpc_smb2,dcerpc_sock}.c, source4/winbind/wb_async_helpers.c. - CVE-2013-4408 Checksums-Sha1: fc1ead9bd6d8823d6bf805127372737bf7a39748 4033630 samba_3.6.9-1ubuntu1.2_amd64.deb b044214870fc1d533cfc4c5cb70b37694878dcc1 3587248 samba-common-bin_3.6.9-1ubuntu1.2_amd64.deb 05276bb3e2a656f2787953e71c93d81977a2ebef 5412674 samba-tools_3.6.9-1ubuntu1.2_amd64.deb fa4aa26ff3c9c498037274c9534feaf4a85ca11a 5714960 smbclient_3.6.9-1ubuntu1.2_amd64.deb db5cad86a725edf02b1922046b0caaa4c4dd3dd8 1637798 swat_3.6.9-1ubuntu1.2_amd64.deb a0ac0acf7745878e63afb2e5ef7fdb558283b06d 594508 libpam-smbpass_3.6.9-1ubuntu1.2_amd64.deb 96cbab0c4362a6065b6c1cb1348c8524b96c0f96 1448904 libsmbclient_3.6.9-1ubuntu1.2_amd64.deb 474441104c81319d21c3b86383a97c2f08e2c8ab 1775006 libsmbclient-dev_3.6.9-1ubuntu1.2_amd64.deb 93e7666f7c342924b2919878dd3f9c2ae3ea740d 2527168 winbind_3.6.9-1ubuntu1.2_amd64.deb 43c551976e97a7fae99965487abf89f00016c6a7 28386 libpam-winbind_3.6.9-1ubuntu1.2_amd64.deb d21deb2571e1ed940c56c6eb9983c5def94bb0af 464122 libnss-winbind_3.6.9-1ubuntu1.2_amd64.deb 7d2013a0cea3ca5f0d95e49a527f6f458288214e 74235682 samba-dbg_3.6.9-1ubuntu1.2_amd64.deb d2617a81ff03102e2262be08ad7e837f05ffacb7 25724 libwbclient0_3.6.9-1ubuntu1.2_amd64.deb 9fb6cb4f0a19acd48908fd754835662c3da50f21 9522 libwbclient-dev_3.6.9-1ubuntu1.2_amd64.deb 3e8a98f24fcba48f131f6d6f44ede8ed7e1104d5 160680 samba_3.6.9-1ubuntu1.2_amd64_translations.tar.gz Checksums-Sha256: 893afad240f653f269ca10ea51a5424da3a2f65adfa061f2502f0806beb0495a 4033630 samba_3.6.9-1ubuntu1.2_amd64.deb 3634c7366c8b0a3f4eada43d90b8d4e5efbcf55a96d046d03aed56ffd8402dad 3587248 samba-common-bin_3.6.9-1ubuntu1.2_amd64.deb 0781a09156911338cab39aca09e01010fa43852245729b0365e5f0b3455569c4 5412674 samba-tools_3.6.9-1ubuntu1.2_amd64.deb 255194d130055c0b9ffb5db6f3376e44ecff6a65a4414fafe93e6bf411771a18 5714960 smbclient_3.6.9-1ubuntu1.2_amd64.deb 6a23f57db67dc84586c383ebb51f28be5832c373df56799f2373277425e58de3 1637798 swat_3.6.9-1ubuntu1.2_amd64.deb 2330e0b3e2e721d8728636c882d2103b7d088d5800aab50a25e4c82646b91bfc 594508 libpam-smbpass_3.6.9-1ubuntu1.2_amd64.deb e7568bd88b88adeb34d1aca4d2ddf23d3aa9c07324e16737cac8dc5537122aa7 1448904 libsmbclient_3.6.9-1ubuntu1.2_amd64.deb 5ed6ecc76cff5366ce442377caf5f9e4aa78165f00a3621523cb92adac5ebc47 1775006 libsmbclient-dev_3.6.9-1ubuntu1.2_amd64.deb b63fbf1b4af7752ba3d14d6484fb5e5238b3f2bafe0274fc73b4f03a1cfa3adc 2527168 winbind_3.6.9-1ubuntu1.2_amd64.deb a8dfe1f57775009774db9daf991bf5876f04cbe8b1692080de5cbfab97077235 28386 libpam-winbind_3.6.9-1ubuntu1.2_amd64.deb dcd356f731132407401bdca795e458e07d01db978a168ad4d666a6fb08b53fa0 464122 libnss-winbind_3.6.9-1ubuntu1.2_amd64.deb 353a733ce9c417cef9a7e40dc326e4d90591c1bb520953e4dacd6da7bd5e7667 74235682 samba-dbg_3.6.9-1ubuntu1.2_amd64.deb 83e12365f28fd1927bb7ee1db1d35e0019ee59055c0683a2214e378f7bc5476d 25724 libwbclient0_3.6.9-1ubuntu1.2_amd64.deb 9c213722fe67acff33443092962006687783e8689090f6c3959632f4b20a0402 9522 libwbclient-dev_3.6.9-1ubuntu1.2_amd64.deb ec3a46f19b6a14508e894542cefa99f433666c13199828e6464de49cffb5921f 160680 samba_3.6.9-1ubuntu1.2_amd64_translations.tar.gz Files: f66c1c615ea5dc23e4542604e5e4dbe9 4033630 net optional samba_3.6.9-1ubuntu1.2_amd64.deb 20a1b80a225bbb9f91ba8ceef08e106d 3587248 net optional samba-common-bin_3.6.9-1ubuntu1.2_amd64.deb b41ee26241b5a23b6149345f617babb5 5412674 net optional samba-tools_3.6.9-1ubuntu1.2_amd64.deb 30deedd90dc4041a5655d8b04bde61ad 5714960 net optional smbclient_3.6.9-1ubuntu1.2_amd64.deb 77720204b5dde05b53a2142d57b55198 1637798 net optional swat_3.6.9-1ubuntu1.2_amd64.deb 9ea9bfe237466d0b6356cad535dffc4e 594508 admin extra libpam-smbpass_3.6.9-1ubuntu1.2_amd64.deb ecdb9d73b7728469582a89bc5784ecb5 1448904 libs optional libsmbclient_3.6.9-1ubuntu1.2_amd64.deb 0430a07d9a3e0bb6fae6320cab59ba24 1775006 libdevel extra libsmbclient-dev_3.6.9-1ubuntu1.2_amd64.deb 039cf571f82e66b9787a3392f504604b 2527168 net optional winbind_3.6.9-1ubuntu1.2_amd64.deb 60d8f8ea45f3c17d362d416deca836df 28386 net optional libpam-winbind_3.6.9-1ubuntu1.2_amd64.deb 6744c2c697d875b744463b11bc01806e 464122 net optional libnss-winbind_3.6.9-1ubuntu1.2_amd64.deb c09f2e15d15b64adc762ba3d4891695e 74235682 debug extra samba-dbg_3.6.9-1ubuntu1.2_amd64.deb 6e740b112826aaf28557e6eaef51c21d 25724 libs optional libwbclient0_3.6.9-1ubuntu1.2_amd64.deb 0721321b56842260ba1932bbcad87d9f 9522 libdevel optional libwbclient-dev_3.6.9-1ubuntu1.2_amd64.deb a0f82edf3b4e9329824a28c8ce04dc0d 160680 raw-translations - samba_3.6.9-1ubuntu1.2_amd64_translations.tar.gz Original-Maintainer: Debian Samba Maintainers