-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 25 Oct 2022 14:30:44 +0300 Source: samba Architecture: source Version: 2:4.17.2+dfsg-1 Distribution: experimental Urgency: medium Maintainer: Debian Samba Maintainers <pkg-samba-maint@lists.alioth.debian.org> Changed-By: Michael Tokarev <mjt@tls.msk.ru> Closes: 1021450 Changes: samba (2:4.17.2+dfsg-1) experimental; urgency=medium . * upstream 4.17.0 release: Closes: CVE-2022-1615 Closes: CVE-2022-32743 - removed spelling.patch (partially applied upstream) - removed weak-crypto-allowed-clarify.diff (applied upstream) - removed dont-ignore-errors-in-random-number-generation-CVE-2022-1615.patch (applied upstream) - refresh: ctdb-create-piddir.patch - refresh: fix-nfs-service-name-to-nfs-kernel-server.patch - d/control: update minimum versions for talloc/tevent/tdb - d/rules: do not install ctdb.service, it is installed by upstream now - d/ctdb.install: do not install ctdb_wrapper (not used anymore) - d/libldb2.symbols, d/d/python3-ldb.symbols.in: new versions: 2.6.0 2.6.1 * upstream 4.17.1 security release: CVE-2021-20251 Bad password count not incremented atomically. * upstream 4.17.2 security release: CVE-2022-3592 A malicious client can use a symlink to escape the exported directory. https://www.samba.org/samba/security/CVE-2022-3592.html (Samba 4.17 only) * new patch: spelling.patch: a few more spelling fixes * per upstream, re-version symbols added in 2.5.2 as added in 2.6.1 (ldb users needs to be recompiled anyway after updating libldb) * move libpac-samba4.so.0 from samba to samba-libs (Closes: #1021450) * d/rules: no need to build compile_et,asn1_compile intermediate targets anymore; also remove now-unused ${WAFv} macro * this release re-does all changes in the former experimental branch Checksums-Sha1: e39a46bf5e13f5539a08cdb09d1f107e381631e1 4201 samba_4.17.2+dfsg-1.dsc ac9f7a2bd8244ea07d1a97d222baf7131805d772 18391328 samba_4.17.2+dfsg.orig.tar.xz cb323a3b95bc4dc519d26ff9b5f6cb3ad892db4c 259340 samba_4.17.2+dfsg-1.debian.tar.xz e65d5131f797c7c5c450dbb1cbba6a554555b737 5907 samba_4.17.2+dfsg-1_source.buildinfo Checksums-Sha256: bc02890aed013426f0190204602b444bcb6ae34db448521ee97f4181b271392e 4201 samba_4.17.2+dfsg-1.dsc 5c8ade6237a57ce85513e9e237829c4bbc8b3cc113dda31f19290d0fa16d31f8 18391328 samba_4.17.2+dfsg.orig.tar.xz ac9a11ba688fbceb11ea6ca5908c7eeef5cf2e9d532da8a035e2e9147a89a427 259340 samba_4.17.2+dfsg-1.debian.tar.xz 29c833adad53e7954181cb81929e1c0efa7a39c65faa9206482f0b5c30027874 5907 samba_4.17.2+dfsg-1_source.buildinfo Files: bbb51361702ff27b9616a3fe4e325c66 4201 net optional samba_4.17.2+dfsg-1.dsc 98074f8729d0ea0ffb5c73ba36b81f44 18391328 net optional samba_4.17.2+dfsg.orig.tar.xz 91cfbbb70a5a81baacb1e899542707f0 259340 net optional samba_4.17.2+dfsg-1.debian.tar.xz ce1c175a7364f284fa34f11c563d3847 5907 net optional samba_4.17.2+dfsg-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQFDBAEBCAAtFiEEe3O61ovnosKJMUsicBtPaxppPlkFAmNXzfAPHG1qdEB0bHMu bXNrLnJ1AAoJEHAbT2saaT5Z/iAH/29UWAyhnnrJTczwvXZeKP4kbUmC+7IzW3Md WwZlGr7C0/iXHj4K2UxW3w6l05OfeAcoRQOx/+SAoGO84HlXiukYLt2mXuwSTHcn rhUMheYdIVJGfWg1YAWit/E3XcmBnHNQFFRpOlpvQbQEljVGVeaEgTJZu1Khbg8E KuprIr8GfyylI1iKztuKFJUex9aECQ8L4Szh+GO26lw0Prjrjkq1eEaebhqusfeC O/T9pCMHBa9nNJMUsAJOg3lnxBFYmcKJmqYZHguKQXcmFPvJ4HSPM+bbHGq45WDU YKn1MgN1MON8JkH26WpOAhYqOxqAc//nfOhttt5Ak/0hAk6DAZE= =zqRC -----END PGP SIGNATURE-----