-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 03 Feb 2022 20:33:10 +0100 Source: samba Architecture: source Version: 2:4.9.5+dfsg-5+deb10u3 Distribution: buster-security Urgency: high Maintainer: Debian Samba Maintainers <pkg-samba-maint@lists.alioth.debian.org> Changed-By: Salvatore Bonaccorso <carnil@debian.org> Closes: 1004693 Changes: samba (2:4.9.5+dfsg-5+deb10u3) buster-security; urgency=high . * Non-maintainer upload by the Security Team. * Add patches for CVE-2021-44142 (Closes: #1004693) - CVE-2021-44142: libadouble: add defines for icon lengths - CVE-2021-44142: smbd: add Netatalk xattr used by vfs_fruit to the list of private Samba xattrs - CVE-2021-44142: libadouble: harden ad_unpack_xattrs() - vfs_fruit: CVE-2021-44142 tweak buffer size check - CVE-2021-44142: libadouble: harden parsing code Checksums-Sha1: 2e8b6a27d3e95aeb64bccba32f3e21e8b8bc0591 4249 samba_4.9.5+dfsg-5+deb10u3.dsc b73bf31660d57b4c32ebef24f5bae5888ff11c8d 276128 samba_4.9.5+dfsg-5+deb10u3.debian.tar.xz Checksums-Sha256: 2000e129c76ebea4c87d3cf77ef361bd9b90007b3a6ae23702ff3bd458328886 4249 samba_4.9.5+dfsg-5+deb10u3.dsc 8e46e92f7f1a41ecbc9cacfb80bf301afa0c4e97be1c5db7910f7d6d72a37da6 276128 samba_4.9.5+dfsg-5+deb10u3.debian.tar.xz Files: fdbb047619d59f11be9e7411fad6911a 4249 net optional samba_4.9.5+dfsg-5+deb10u3.dsc dd68a04fb4cb62894b3cc52fe6fad6fb 276128 net optional samba_4.9.5+dfsg-5+deb10u3.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQKmBAEBCgCQFiEERkRAmAjBceBVMd3uBUy48xNDz0QFAmH8MDBfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDQ2 NDQ0MDk4MDhDMTcxRTA1NTMxRERFRTA1NENCOEYzMTM0M0NGNDQSHGNhcm5pbEBk ZWJpYW4ub3JnAAoJEAVMuPMTQ89EbTEP/1N31j1JdVBDRw1AG5IuNUR70Fbfi+ZR Rlrf+B6VX+NvDOZ1Nb6pxISqlDzPzmhe9kDeDGQBtvgs1wL5IlCpRxmpfH6eZ9il gMPVqJ8YBAYGugySC2nJ4jxSBareo1DMF3JH0xqJ+Xh4mVZZrtZrBOpcEl6pTXye DE4GmdGrymPeNUs0hWv0Mtwo1JyVuUWoueYnAT1RF6Kmm7Q+oTaNDr5/l4sdXd2N l4FOPbnxtc2sH0UxaCZH25pPBtQzND9GOTZA5fDjVQm1bSgjkDI1GkubxiMxVnF7 4BjiFN4/gUlu4XKRYk6XAN3Szkiy8hGEbQPG3WvnUf73wG55vToS/KtOn+BNr7Zo c/X53NoiIfTe7ZH6kb/oGBt30eiZPYO/Ugl/hbv2eg2a7d2ajnQPqJLIOpW6KC1P rwRdf9OTN5pYkoSQfKJOD+5NvummDLS5z7RLF5IU6XdZNZNvz7bkyBRh9m/dVhkL lIMGdLPGrYhJAT5VWM6M4a2TqmwEgm4SJPLRdNeBYIyetg9TCl1G/u/bF6QJ5TCe 7OEnjdKZ1iEXXl8Jwb454CZzcS2K44rRrFAtBSKPVGASMJ7OLF6xwgL4pMqqOZt/ mto5lHJEAF6u5ezFVdfpmUXmvxbwhMGu68w/JZPazCuR0CppgxKKTcWQe1sfCPrr gDAAPtTJi7wd =E++v -----END PGP SIGNATURE-----