Guest User

Samba Debian changelog

a guest
May 1st, 2016
207
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.10 KB | None | 0 0
  1. samba (2:3.6.6-6+deb7u9) wheezy-security; urgency=high
  2.  
  3. * Non-maintainer upload by the Security Team.
  4. * Update CVE patchset for regression fixes
  5.  
  6. -- Salvatore Bonaccorso <[email protected]> Tue, 12 Apr 2016 18:34:07 +0200
  7.  
  8. samba (2:3.6.6-6+deb7u8) wheezy-security; urgency=high
  9. * Security update
  10. + Fixes:
  11. - CVE-2015-5370 (Multiple errors in DCE-RPC code)
  12. - CVE-2016-2110 (Man in the middle attacks possible with NTLMSSP)
  13. - CVE-2016-2111 (NETLOGON Spoofing Vulnerability)
  14. - CVE-2016-2112 (LDAP client and server don't enforce integrity)
  15. - CVE-2016-2115 (SMB IPC traffic is not integrity protected)
  16. - CVE-2016-2118 (SAMR and LSA man in the middle attacks possible)
  17. + The Samba 3.6 patches have been backported by Andreas Schneider
  18. (Red Hat) and Ralph Böhme (SerNet). Thanks goes to Stefan Metzmacher
  19. for finding and fixing the CVEs in the first place. Thanks for the
  20. help with backporting to Günther Deschner (Red Hat) and Aurélien Aptel
  21. (SUSE).
  22.  
  23. -- Andrew Bartlett <[email protected]> Fri, 08 Apr 2016 16:23:09 +1200
Advertisement
Add Comment
Please, Sign In to add comment