Format: 1.8 Date: Mon, 09 Dec 2013 12:41:25 -0500 Source: samba Binary: samba samba-common-bin samba-common samba-tools smbclient swat samba-doc samba-doc-pdf smbfs libpam-smbpass libsmbclient libsmbclient-dev winbind samba-dbg libwbclient0 Architecture: armel armel_translations Version: 2:3.4.7~dfsg-1ubuntu3.13 Distribution: lucid Urgency: low Maintainer: Ubuntu/armhf Build Daemon Changed-By: Marc Deslauriers Description: libpam-smbpass - pluggable authentication module for Samba libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient0 - Samba winbind client library samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - common files used by both the Samba server and client samba-dbg - Samba debugging symbols samba-doc - Samba documentation samba-doc-pdf - Samba documentation in PDF format samba-tools - Samba testing utilities smbclient - command-line SMB/CIFS clients for Unix smbfs - Samba file system utilities swat - Samba Web Administration Tool winbind - Samba nameservice integration server Changes: samba (2:3.4.7~dfsg-1ubuntu3.13) lucid-security; urgency=low . * SECURITY UPDATE: file restrictions bypass via alternate data streams - debian/patches/CVE-2013-4475.patch: properly check base file access in source3/smbd/open.c. - CVE-2013-4475 * SECURITY UPDATE: pam_winbind access restriction bypass via invalid group names - debian/patches/CVE-2012-6150.patch: ensure valid groups in nsswitch/pam_winbind.c. - CVE-2012-6150 * SECURITY UPDATE: arbitrary code execution via incorrect DCE-RPC fragment length field checking - debian/patches/CVE-2013-4408.patch: apply massive upstream fix to lib/async_req/async_sock.c, libcli/util/ntstatus.h, source3/lib/netapi/{group,localgroup,user}.c, source3/libnet/libnet_join.c, source3/libsmb/nterr.c, source3/rpc_client/{cli_lsarpc,cli_pipe}.c, source3/rpc_server/{srv_pipe,srv_pipe_hnd}.c, source3/rpcclient/cmd_samr.c, source3/smbd/lanman.c, source3/utils/{net_rpc,net_rpc_join}.c, source3/winbindd/winbindd_rpc.c, source4/libcli/util/{clilsa,nterr}.c, source4/libnet/{groupinfo,groupman,libnet_join,libnet_lookup, libnet_passwd,userinfo,userman}.c, source4/librpc/rpc/{dcerpc,dcerpc_smb,dcerpc_smb2,dcerpc_sock}.c, source4/winbind/wb_async_helpers.c. - CVE-2013-4408 Checksums-Sha1: f80cbb94e97dc55424d1dd45f37536abff5582e8 5908196 samba_3.4.7~dfsg-1ubuntu3.13_armel.deb d8a31c136b6f14bad827a058d07b568b331ba6d5 4535108 samba-common-bin_3.4.7~dfsg-1ubuntu3.13_armel.deb 1e7bff3a4ec1e952e5818f317523221994b3fae9 9262820 samba-tools_3.4.7~dfsg-1ubuntu3.13_armel.deb 9f96e0e74a2a40c003c86a35239691f261d92015 10797814 smbclient_3.4.7~dfsg-1ubuntu3.13_armel.deb ae038c3bc8161e1ddf2bdb44b2cc780f4b633632 1811996 swat_3.4.7~dfsg-1ubuntu3.13_armel.deb bab0423a15979aeeea5f7cc81ddf7eb4cb7c6f31 1750444 smbfs_3.4.7~dfsg-1ubuntu3.13_armel.deb 00c96f849e7a571a22ec32871b65e836eb94744f 643620 libpam-smbpass_3.4.7~dfsg-1ubuntu3.13_armel.deb 1ea77bb8f3945d0f21fd2a377a9f1fe7a3e329fa 1561812 libsmbclient_3.4.7~dfsg-1ubuntu3.13_armel.deb f438e8920fd6683f043c49d7b2ab4029c62e5953 2324830 libsmbclient-dev_3.4.7~dfsg-1ubuntu3.13_armel.deb 1fd827d056d6a7f01c0beb6fc073d6bdd03b87e4 4148944 winbind_3.4.7~dfsg-1ubuntu3.13_armel.deb 4d0de1b5a1d0a422ca7396e35843a9fa1bd0a38e 52725092 samba-dbg_3.4.7~dfsg-1ubuntu3.13_armel.deb 0c13a29c20de8e2daeb605b9fc017b57b9c478b6 106968 libwbclient0_3.4.7~dfsg-1ubuntu3.13_armel.deb 8d87fb6c3f0f4102a7f7334e4f7b3a4591fe081f 115931 samba_3.4.7~dfsg-1ubuntu3.13_armel_translations.tar.gz Checksums-Sha256: 6c03ec5f6414b97003ade2050e75f4b8c18522cd17ab5e819277073eb9f8da19 5908196 samba_3.4.7~dfsg-1ubuntu3.13_armel.deb 9b68904b00ec6fa09712176d2a2bed5f69de51d8b1d5c24af31abec85723b08c 4535108 samba-common-bin_3.4.7~dfsg-1ubuntu3.13_armel.deb 397a8201308d2d09e1ff6241924f57b133e04ad9e56c0451a97551a6a640e36c 9262820 samba-tools_3.4.7~dfsg-1ubuntu3.13_armel.deb 519c581cda4f267405aa4d8bcdac8768241b037b508070a00b91f4e3b0651deb 10797814 smbclient_3.4.7~dfsg-1ubuntu3.13_armel.deb d55ab046c66ee6f8e55768eaea9f685792250535da8cd976f260bf6ba35973d2 1811996 swat_3.4.7~dfsg-1ubuntu3.13_armel.deb 88b96645a86500426f37ce4868ed35ed0a99dedb95b88ce6f030cbb82ab012d7 1750444 smbfs_3.4.7~dfsg-1ubuntu3.13_armel.deb 9a8e45467c423ef672e28cd45929623e1d154005db6e21a56e91ee99a3f59f2c 643620 libpam-smbpass_3.4.7~dfsg-1ubuntu3.13_armel.deb fc1bff9939979514e2b832e472c0c6845d85e1ce39bb79554388b10f4335ac6d 1561812 libsmbclient_3.4.7~dfsg-1ubuntu3.13_armel.deb ac2213b571902eba9f55cc6e2b547733fb006fca9dd3e2a86cdfb21e6feea79d 2324830 libsmbclient-dev_3.4.7~dfsg-1ubuntu3.13_armel.deb 85a67566b3cdb3ee5f30dc7c18c950577d0bf886051d6d87e3ba80e95a64376d 4148944 winbind_3.4.7~dfsg-1ubuntu3.13_armel.deb bd26f27019dc7b48edabf06b19ecdd7de6344e24bc33c42c85ca82aeae53d704 52725092 samba-dbg_3.4.7~dfsg-1ubuntu3.13_armel.deb 9faf5665867c418d10763d28449b8a322fc51404d9266111adc7cd50e9f26d90 106968 libwbclient0_3.4.7~dfsg-1ubuntu3.13_armel.deb 28f992fe17caca546fb899023b6d0cadfea0d6661c73a5805b02417240880227 115931 samba_3.4.7~dfsg-1ubuntu3.13_armel_translations.tar.gz Files: 81d19d0e9a545d890785ce055f3ec85f 5908196 net optional samba_3.4.7~dfsg-1ubuntu3.13_armel.deb 801be76e3a7c73d66378fb394bc225f1 4535108 net optional samba-common-bin_3.4.7~dfsg-1ubuntu3.13_armel.deb 7bfc161bc1dde849e169eeb55444b9f5 9262820 net optional samba-tools_3.4.7~dfsg-1ubuntu3.13_armel.deb 3abccaafec043f78f12ba06ffa2afe0b 10797814 net optional smbclient_3.4.7~dfsg-1ubuntu3.13_armel.deb 8e9700529107d30baec82cbec5a67045 1811996 net optional swat_3.4.7~dfsg-1ubuntu3.13_armel.deb 772cf15f825c79ce2f74bf8e8589ae24 1750444 otherosfs optional smbfs_3.4.7~dfsg-1ubuntu3.13_armel.deb 8188eabd9c7bc8b1b42b789c9b98f89a 643620 admin extra libpam-smbpass_3.4.7~dfsg-1ubuntu3.13_armel.deb 622be0f9669d9cd9d8cde7764558bd4a 1561812 libs optional libsmbclient_3.4.7~dfsg-1ubuntu3.13_armel.deb 043ae880665a7f76e730ca18b86f1785 2324830 libdevel extra libsmbclient-dev_3.4.7~dfsg-1ubuntu3.13_armel.deb 93acd0aa6ec3675b48523beff5894d13 4148944 net optional winbind_3.4.7~dfsg-1ubuntu3.13_armel.deb 4e28d5bcad99fcc273bfad1c10570904 52725092 debug extra samba-dbg_3.4.7~dfsg-1ubuntu3.13_armel.deb d4441deb34264d2c7c9c96ed23333ffd 106968 libs optional libwbclient0_3.4.7~dfsg-1ubuntu3.13_armel.deb ac4fd9d3d5ded834660054b2c97ad8d0 115931 raw-translations - samba_3.4.7~dfsg-1ubuntu3.13_armel_translations.tar.gz Original-Maintainer: Debian Samba Maintainers