-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 19 Sep 2017 21:43:43 +0200 Source: samba Binary: samba samba-libs samba-common samba-common-bin smbclient samba-testsuite registry-tools libparse-pidl-perl samba-dev samba-doc python-samba samba-dsdb-modules samba-vfs-modules libpam-smbpass libsmbclient libsmbclient-dev winbind libpam-winbind libnss-winbind samba-dbg libwbclient0 libwbclient-dev ctdb Architecture: source amd64 all Version: 2:4.2.14+dfsg-0+deb8u8 Distribution: jessie-security Urgency: high Maintainer: Debian Samba Maintainers <pkg-samba-maint@lists.alioth.debian.org> Changed-By: Mathieu Parent <sathieu@debian.org> Description: ctdb - clustered database to store temporary data libnss-winbind - Samba nameservice integration plugins libpam-smbpass - pluggable authentication module for Samba libpam-winbind - Windows domain authentication integration plugin libparse-pidl-perl - IDL compiler written in Perl libsmbclient - shared library for communication with SMB/CIFS servers libsmbclient-dev - development files for libsmbclient libwbclient-dev - Samba winbind client library - development files libwbclient0 - Samba winbind client library python-samba - Python bindings for Samba registry-tools - tools for viewing and manipulating the Windows registry samba - SMB/CIFS file, print, and login server for Unix samba-common - common files used by both the Samba server and client samba-common-bin - Samba common files used by both the server and the client samba-dbg - Samba debugging symbols samba-dev - tools for extending Samba samba-doc - Samba documentation samba-dsdb-modules - Samba Directory Services Database samba-libs - Samba core libraries samba-testsuite - test suite from Samba samba-vfs-modules - Samba Virtual FileSystem plugins smbclient - command-line SMB/CIFS clients for Unix winbind - service to resolve user and group information from Windows NT ser Changes: samba (2:4.2.14+dfsg-0+deb8u8) jessie-security; urgency=high . * This is a security release in order to address the following defects: - CVE-2017-12150: Some code path don't enforce smb signing, when they should - CVE-2017-12151: Keep required encryption across SMB3 dfs redirects - CVE-2017-12163: Server memory information leak over SMB1 Checksums-Sha1: 64fb3ba197d6ac8b558a826463efb997758f782e 4188 samba_4.2.14+dfsg-0+deb8u8.dsc b965a09a7db8cba027d85cd1ba4e40c74114a325 265064 samba_4.2.14+dfsg-0+deb8u8.debian.tar.xz 0e4d4f9868d35b9922f52fd2185b8730b2b877a7 1032128 samba_4.2.14+dfsg-0+deb8u8_amd64.deb 835652582c134a86b037b81229c64a1084b3e119 5115588 samba-libs_4.2.14+dfsg-0+deb8u8_amd64.deb 29445f9104e064cd05c1da28260eae9c68464190 270170 samba-common_4.2.14+dfsg-0+deb8u8_all.deb 13c3aa6a539c6265d8dd39b8fc6ddcb45dab08ea 615968 samba-common-bin_4.2.14+dfsg-0+deb8u8_amd64.deb 7fcd005eaf7e5cd4b0ccb782affabb88e15d1d59 343858 smbclient_4.2.14+dfsg-0+deb8u8_amd64.deb ead4d252bbee3768f6ab4ada06b0a35b2afaf7ea 1570512 samba-testsuite_4.2.14+dfsg-0+deb8u8_amd64.deb 42569e061501cd9ed7719f31207a185ad231fdbc 123954 registry-tools_4.2.14+dfsg-0+deb8u8_amd64.deb 401810f48014ff54305aaf85c7a2c8cb1ee3b705 185242 libparse-pidl-perl_4.2.14+dfsg-0+deb8u8_amd64.deb 9c44281a93d793e3254cfdbd3733d46208087072 336470 samba-dev_4.2.14+dfsg-0+deb8u8_amd64.deb b32aa9156d7355e7714146371e1f2f77e780d282 321492 samba-doc_4.2.14+dfsg-0+deb8u8_all.deb 8120a3877a982ed10362d7f7fb82fdcc51026fe3 1019974 python-samba_4.2.14+dfsg-0+deb8u8_amd64.deb 10a5e92bcfe4e6f40a76b5665b3cfd6346f2552e 308716 samba-dsdb-modules_4.2.14+dfsg-0+deb8u8_amd64.deb f874c01cdcb896c12274e25ad5e749b896d71fba 330654 samba-vfs-modules_4.2.14+dfsg-0+deb8u8_amd64.deb 0b550db3ff078576c673c1b8e7b594bf7b7a1cf1 112022 libpam-smbpass_4.2.14+dfsg-0+deb8u8_amd64.deb 0a06f79a856e6720ba5f091d383faaa62461f0c9 147478 libsmbclient_4.2.14+dfsg-0+deb8u8_amd64.deb f320e93f890e888de630d727b8464c9f31ca7d05 134972 libsmbclient-dev_4.2.14+dfsg-0+deb8u8_amd64.deb d213cb239e53979f542dd0bffab0a17189cd9c21 495914 winbind_4.2.14+dfsg-0+deb8u8_amd64.deb d9f364a80b6e2554314361ae3f852f436936fa4c 123130 libpam-winbind_4.2.14+dfsg-0+deb8u8_amd64.deb 740b1fc400dfdf81c427f7049aa8b999160681b3 107686 libnss-winbind_4.2.14+dfsg-0+deb8u8_amd64.deb a6b0fcbafe66d77024221d8a69c58b12f1b07645 29557126 samba-dbg_4.2.14+dfsg-0+deb8u8_amd64.deb fe8d825630c3570633412afa39d169f006f68bd5 122336 libwbclient0_4.2.14+dfsg-0+deb8u8_amd64.deb d99667ff4180327f3767262a3eed72c258d863d1 107456 libwbclient-dev_4.2.14+dfsg-0+deb8u8_amd64.deb c220b2cf9a31e28efb0624248177f6f0e345feb3 512494 ctdb_4.2.14+dfsg-0+deb8u8_amd64.deb Checksums-Sha256: 69172df366c1b97aba6111a59044c2eb15d844759e02dba70cab50cb338fb64c 4188 samba_4.2.14+dfsg-0+deb8u8.dsc 04b8569e7c443b57fc30aca446a727a86856fa1ff5c35cf3ed09b4baeb393ecc 265064 samba_4.2.14+dfsg-0+deb8u8.debian.tar.xz 05a63fbaae8671c831227aba4bb71c929e7a23a408ccba8077ce3abf4c146820 1032128 samba_4.2.14+dfsg-0+deb8u8_amd64.deb 22ed324a17e491f2b5036536fdfff46f7cd5e728aa9b7bb9031fcd64bfdd6733 5115588 samba-libs_4.2.14+dfsg-0+deb8u8_amd64.deb 08c195b7f11ffd0486ff24f62166698b1fa1d1ea3efaa9c43b6c63afdc9d7b2e 270170 samba-common_4.2.14+dfsg-0+deb8u8_all.deb ac5c41ecb5ba1beac5401dab1d3ccd30a6d34674e8c2d3f251f8ae3b166ad296 615968 samba-common-bin_4.2.14+dfsg-0+deb8u8_amd64.deb 573a10162b83bcb14320f94fc2d2a7e9c16131e2ae8be533a5f76716a886cfc4 343858 smbclient_4.2.14+dfsg-0+deb8u8_amd64.deb 1c5e07fd88c93d802db66b5d92adc829b086e56cde16bc7020cfb059b3e4b4eb 1570512 samba-testsuite_4.2.14+dfsg-0+deb8u8_amd64.deb af64e5aa02f0aae45602a271c311b3d1cbb71ebfccb439cb4b3292c427edb5dc 123954 registry-tools_4.2.14+dfsg-0+deb8u8_amd64.deb ea2097169dfd1eddb2104f68856a59513217ab1e31bd818b413736bb8ef18dd8 185242 libparse-pidl-perl_4.2.14+dfsg-0+deb8u8_amd64.deb 7a9af5f67504b6694684a351ccb3d7b5e08b0e5316298ad79ea50ea4e012c913 336470 samba-dev_4.2.14+dfsg-0+deb8u8_amd64.deb 3565a6f22c90efcca0fff272a3db8d20ccff3544513b0bbf4fed25f5528ee788 321492 samba-doc_4.2.14+dfsg-0+deb8u8_all.deb b2f952f9717632af8aa628df7b0f5bbc9e222ba95fa94f4f4ce9b2934f48157b 1019974 python-samba_4.2.14+dfsg-0+deb8u8_amd64.deb 7762e4fe02956d75bcfc1bab13e9244edd71da80d23dde47810c45ad8c767f4b 308716 samba-dsdb-modules_4.2.14+dfsg-0+deb8u8_amd64.deb b853edacc2fb693cd4bcbafba467c7402146728c979bf50256d5492d52f3221f 330654 samba-vfs-modules_4.2.14+dfsg-0+deb8u8_amd64.deb 16ef5cb5eca3c4955bd02f7b7585ce5a8da4bdd4e70e787446ca82c1a8f25f0b 112022 libpam-smbpass_4.2.14+dfsg-0+deb8u8_amd64.deb 49e55d472b78ee78bc07eb8a73d6dacf1e9188405bf0be876e0a18527a594a6b 147478 libsmbclient_4.2.14+dfsg-0+deb8u8_amd64.deb 084525fe826c82ef9c12285555557ab8db2bf91d5d072d565442c1a3e776b293 134972 libsmbclient-dev_4.2.14+dfsg-0+deb8u8_amd64.deb e47e6b5ae269e42e3ebc5f1d1952285e8fb2b4022662e1eaee55faa6d2c15ae2 495914 winbind_4.2.14+dfsg-0+deb8u8_amd64.deb c646929c23e34bd54350ebe1b22ffc32f91258251101959c5f9bce1fb72ae4f7 123130 libpam-winbind_4.2.14+dfsg-0+deb8u8_amd64.deb 231b69659dceb133e367cf5216de6932d2348ff1c8efbd8bd2a731fee5741614 107686 libnss-winbind_4.2.14+dfsg-0+deb8u8_amd64.deb 11da85289d989814041999d67f088d7855a8bd917289dbda3b308b54a0adf81b 29557126 samba-dbg_4.2.14+dfsg-0+deb8u8_amd64.deb a59618b0d111acb54780516b837759814cda0d111ffa8f7bd22b252a445235e9 122336 libwbclient0_4.2.14+dfsg-0+deb8u8_amd64.deb 88c93aaf8f459342d425374cc6ce504b89be87ff36a4a2651f3932f3fcda2295 107456 libwbclient-dev_4.2.14+dfsg-0+deb8u8_amd64.deb d145101e79cc53771f1b47c1cbbb61f9cd92f3ebbbcdeba8961e38c2c3bb245c 512494 ctdb_4.2.14+dfsg-0+deb8u8_amd64.deb Files: 15b8b9d9874b2bde594afb96de0f5f8f 4188 net optional samba_4.2.14+dfsg-0+deb8u8.dsc e310273c08e78da5923e90bab8ab5d87 265064 net optional samba_4.2.14+dfsg-0+deb8u8.debian.tar.xz dac6294285ff486644f0c154925813a3 1032128 net optional samba_4.2.14+dfsg-0+deb8u8_amd64.deb 7b9460d786c48d4a9266e77ff34d3ddf 5115588 libs optional samba-libs_4.2.14+dfsg-0+deb8u8_amd64.deb 03bcc6151d15a7e06638ffca356b51e4 270170 net optional samba-common_4.2.14+dfsg-0+deb8u8_all.deb dc56ab492264e393cba97778d21a0781 615968 net optional samba-common-bin_4.2.14+dfsg-0+deb8u8_amd64.deb 5d46b7c750eb850978c507ad503e2f05 343858 net optional smbclient_4.2.14+dfsg-0+deb8u8_amd64.deb 80cdf9247c73c90e7fc70bafa66f5363 1570512 net optional samba-testsuite_4.2.14+dfsg-0+deb8u8_amd64.deb 2b4db1c2a5797a2c5379164c08d4c0a8 123954 net optional registry-tools_4.2.14+dfsg-0+deb8u8_amd64.deb 0a3172b1f51d2e725d49fc1bf9b6c88a 185242 perl optional libparse-pidl-perl_4.2.14+dfsg-0+deb8u8_amd64.deb 16153ff182f56d18f4518f26f74fbfd1 336470 devel optional samba-dev_4.2.14+dfsg-0+deb8u8_amd64.deb b9a0d6f4392c3a9001ff791080301606 321492 doc optional samba-doc_4.2.14+dfsg-0+deb8u8_all.deb 04c6b72a494daa29178ad3f9fa0364b1 1019974 python optional python-samba_4.2.14+dfsg-0+deb8u8_amd64.deb b51c51d19b674eec7d52e246803859a7 308716 libs optional samba-dsdb-modules_4.2.14+dfsg-0+deb8u8_amd64.deb 7d613c9144d9ab454c0de51854100f54 330654 net optional samba-vfs-modules_4.2.14+dfsg-0+deb8u8_amd64.deb 41136c5d396c95ae73e588a6c7a2b8be 112022 admin extra libpam-smbpass_4.2.14+dfsg-0+deb8u8_amd64.deb c2f851b7df205e4cad4d7e9ffa46cb1d 147478 libs optional libsmbclient_4.2.14+dfsg-0+deb8u8_amd64.deb 1b81fc74011f78e765edeb965130e13a 134972 libdevel extra libsmbclient-dev_4.2.14+dfsg-0+deb8u8_amd64.deb 237f4a922047daf6e9f7520b821982c6 495914 net optional winbind_4.2.14+dfsg-0+deb8u8_amd64.deb 7000ed91cede2c8857aed24fc8d6c3ed 123130 net optional libpam-winbind_4.2.14+dfsg-0+deb8u8_amd64.deb a77aa542429881cb54e1caaca3f6735c 107686 net optional libnss-winbind_4.2.14+dfsg-0+deb8u8_amd64.deb 846e503569326f7da16af616e5a9c99c 29557126 debug extra samba-dbg_4.2.14+dfsg-0+deb8u8_amd64.deb 6439d373ace48df130699dc58b2d9106 122336 libs optional libwbclient0_4.2.14+dfsg-0+deb8u8_amd64.deb d6fac569ea437b4542fcf6b7609974a6 107456 libdevel optional libwbclient-dev_4.2.14+dfsg-0+deb8u8_amd64.deb 2a5a45cf2387501b557ba176cb724078 512494 net optional ctdb_4.2.14+dfsg-0+deb8u8_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEqIGbPTP9weQZ135HrgOYBGZoH6UFAlnCJ+kACgkQrgOYBGZo H6WJVg/+Idi+sysCU4gi4Tj2cayk6OppxuYk4msyReVIcR1yf1hfKHZ4oWObyNhg 3FfHKAzfXal+pTACcQRAszGEBZFmjIBgdt7zF+U/znJHzwhjKq9hMhTGy1sUD1X3 AQJJrKKnDEDNHBSrJMgBRO2pytndznwaUvP+f6kFqc9HORM4Y9o95yh6ZhYj0GN2 1fQv1K6Szgjyga1oj1DcuFHpRRayvm/EomkgufduVPh3eyVYXh0uq16JSTe6wRZk ESOVtJsNThJdL7jyaIbc7J+TAgWtNWoJmhZA/y0NR1ZXf+MyojbJHr6+SwJJaHVt ROmSEj3ATJshJHNiN11JbEu1vkJ1H1jlNgZ0B4W7ZT0NKTFbAuqyXSEI0fmBh7Lu 4CqXTiAcE6l667AwL3L1XGTUPLHwQwGVWNCeOz4nZYY7zFoLcPMLHxn6++WS3Rrs j8QJahTU3UsOVJvldMHYkepdz0yfkiR8Amxd3k+VjIMV6SzUofWx0N5Lbsj2EbDH O3t/QUoIYoitO2Yx8S7T9F0LFXB2WtHJhGM3NLomuq4PITkbMGaaeRKvJU8bYCr4 qLaYlJj8iErbJ4fW2rNI+ppihvcJEfLWTrSg84sYoz71SkC3/NZql+f56di9bjXJ zZIW04fsOlesVZemvyxa8SShO3Dlnq/VyH59OXcu9/rkU7GMnGg= =ctlq -----END PGP SIGNATURE-----