samba 2:4.13.13+dfsg-1~deb11u2 source package in Debian

Changelog

samba (2:4.13.13+dfsg-1~deb11u2) bullseye-security; urgency=high

  * This is a security release in order to address the following defects:
    - CVE-2016-2124: don't fallback to non spnego authentication if we require
      kerberos
    - MS CVE-2020-17049 in Samba: 'Bronze bit' S4U2Proxy Constrained Delegation
      bypass
    - CVE-2020-25717: A user on the domain can become root on domain members
    - CVE-2020-25718: An RODC can issue (forge) administrator tickets to other
      servers
      + Bump build-depends ldb >= 2.2.3
    - CVE-2020-25719: AD DC Username based races when no PAC is given
    - CVE-2020-25721: Kerberos acceptors need easy access to stable AD
      identifiers (eg objectSid)
    - CVE-2020-25722: AD DC UPN vs samAccountName not checked (top-level bug
      for AD DC validation issues)
    - CVE-2021-3738: crash in dsdb stack
    - CVE-2021-23192: dcerpc requests don't check all fragments against the
      first auth_state
      + Update d/samba-libs.install for libdcerpc-pkt-auth.so.0

 -- Mathieu Parent <email address hidden>  Thu, 04 Nov 2021 23:20:37 +0100

Upload details

Uploaded by:
Debian Samba Maintainers
Uploaded to:
Bullseye
Original maintainer:
Debian Samba Maintainers
Architectures:
any all
Section:
net
Urgency:
Very Urgent

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Downloads

File Size SHA-256 Checksum
samba_4.13.13+dfsg-1~deb11u2.dsc 4.3 KiB da40f469fbb124ef50605297cef58ff517b86d6ba0ed4f176da670567cdfa4c7
samba_4.13.13+dfsg.orig.tar.xz 11.2 MiB c4747c211a2050e583d706cf380d48f5d9c1021536a9229fd6ba69e461545c46
samba_4.13.13+dfsg-1~deb11u2.debian.tar.xz 447.9 KiB 3ab874f251578abbc8c5ea0bddeabb29852e2a6bd90f604cf4e4f87f4832bac1

No changes file available.

Binary packages built by this source