You are here
Home > Preporuke > Ranjivost programskog paketa samba

Ranjivost programskog paketa samba

  • Detalji os-a: FED
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2015-2519
2015-02-25 09:54:15
——————————————————————————–

Name : samba
Product : Fedora 20
Version : 4.1.17
Release : 1.fc20
URL : http://www.samba.org/
Summary : Server and Client software to interoperate with Windows machines
Description :
Samba is the standard Windows interoperability suite of programs for Linux and Unix.

——————————————————————————–
Update Information:

Update to Samba 4.1.17 to address CVE-2015-0240 – RCE in netlogon.
——————————————————————————–
ChangeLog:

* Mon Feb 23 2015 Andreas Schneider <asn@redhat.com> – 4.1.17-1
– Update to Samba 4.1.17
– Fix CVE-2015-0240 – RCE in netlogon
* Tue Jan 13 2015 – Andreas Schneider <asn@redhat.com> – 4.1.15-1
– Update to Samba 4.1.14.
– resolves: #1175710 – Fix auth with long hostnames.
* Wed Jan 7 2015 – Andreas Schneider <asn@redhat.com> – 4.1.14-2
– Remove alternatives for libwbclient.
* Wed Dec 10 2014 – Andreas Schneider <asn@redhat.com> – 4.1.14-1
– Update to Samba 4.1.14.
* Wed Nov 26 2014 – Andreas Schneider <asn@redhat.com> – 4.1.13-1
– Update to Samba 4.1.13.
* Tue Oct 7 2014 – Andreas Schneider <asn@redhat.com> – 4.1.12-5
– resolves: #1033595 – Fix segfault in winbind.
* Wed Sep 24 2014 – Andreas Schneider <asn@redhat.com> – 4.1.12-4
– Update to Samba 4.1.12.
– resolves: #1145313 – Fix smbclient auth against a DFS share.
* Fri Aug 1 2014 – Jared Smith <jsmith@fedoraproject.org> – 4.1.9-4
– resolves: #1126015 – Fix CVE-2014-3560
* Mon Jun 23 2014 – Guenther Deschner <gdeschner@redhat.com> – 4.1.9-3
– Update to Samba 4.1.9.
– resolves: #1112251 – Fix CVE-2014-0244 and CVE-2014-3493.
* Wed Jun 11 2014 – Guenther Deschner <gdeschner@redhat.com> – 4.1.8-3
– Update to Samba 4.1.8.
– resolves: #1102528 – CVE-2014-0178.
* Thu Apr 3 2014 – Andreas Schneider <asn@redhat.com> – 4.1.6-3
– Add systemd integration to the service daemons.
* Tue Mar 18 2014 – Andreas Schneider <asn@redhat.com> – 4.1.6-2
– Created a samba-test-libs package.
* Tue Mar 11 2014 – Andreas Schneider <asn@redhat.com> – 4.1.6-1
– Fix CVE-2013-4496 and CVE-2013-6442.
– Fix installation of pidl.
* Fri Feb 21 2014 – Andreas Schneider <asn@redhat.com> – 4.1.5-1
– Update to Samba 4.1.5.
* Fri Feb 7 2014 – Andreas Schneider <asn@redhat.com> – 4.1.4-1
– Update to Samba 4.1.4.
* Tue Dec 10 2013 – Guenther Deschner <gdeschner@redhat.com> – 4.1.3-2
– resolves: #1019469 – Fix winbind debug message NULL pointer derreference.
* Mon Dec 9 2013 – Andreas Schneider <asn@redhat.com> – 4.1.3-1
– Update to Samba 4.1.3.
– resolves: #1039454 – CVE-2013-4408.
– resolves: #1039500 – CVE-2012-6150.
* Mon Nov 25 2013 – Andreas Schneider <asn@redhat.com> – 4.1.2-1
– Update to Samba 4.1.2.
* Mon Nov 18 2013 – Guenther Deschner <gdeschner@redhat.com> – 4.1.1-3
– resolves: #948509 – Fix manpage correctness.
* Fri Nov 15 2013 – Andreas Schneider <asn@redhat.com> – 4.1.1-2
– related: #884169 – Fix strict aliasing warnings.
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update samba’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

——————————————————————————–
Fedora Update Notification
FEDORA-2015-2538
2015-02-25 09:54:51
——————————————————————————–

Name : samba
Product : Fedora 21
Version : 4.1.17
Release : 1.fc21
URL : http://www.samba.org/
Summary : Server and Client software to interoperate with Windows machines
Description :
Samba is the standard Windows interoperability suite of programs for Linux and Unix.

——————————————————————————–
Update Information:

Update to Samba 4.1.17 to address CVE-2015-0240 – RCE in netlogon.
——————————————————————————–
ChangeLog:

* Mon Feb 23 2015 Andreas Schneider <asn@redhat.com> – 4.1.17-1
– Update to Samba 4.1.17
– Fix CVE-2015-0240 – RCE in netlogon
* Tue Jan 13 2015 – Andreas Schneider <asn@redhat.com> – 4.1.15-1
– Update to Samba 4.1.14.
– resolves: #1175710 – Fix auth with long hostnames.
* Wed Jan 7 2015 – Andreas Schneider <asn@redhat.com> – 4.1.14-2
– Add missing requires to libwbclient.
* Wed Dec 10 2014 – Andreas Schneider <asn@redhat.com> – 4.1.14-1
– Update to Samba 4.1.14.
* Wed Nov 26 2014 – Andreas Schneider <asn@redhat.com> – 4.1.13-1
– Update to Samba 4.1.12.
– Use alternatives for libwbclient.
——————————————————————————–

This update can be installed with the “yum” update program. Use
su -c ‘yum update samba’ at the command line.
For more information, refer to “Managing Software with yum”,
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list
package-announce@lists.fedoraproject.org
https://admin.fedoraproject.org/mailman/listinfo/package-announce

AutorTomislav Protega
Cert idNCERT-REF-2015-02-0006-ADV
CveCVE-2015-0240 CVE-2014-3560 CVE-2014-0244 CVE-2014-3493 CVE-2014-0178 CVE-2013-4496 CVE-2013-6442 CVE-2013-4408 CVE-2012-6150
ID izvornikaFEDORA-2015-2519 FEDORA-2015-2538
Proizvodsamba
Izvorhttp://www.redhat.com
Top
More in Preporuke
Ranjivost programskog paketa igmp

Otkrivena je ranjivost cjelobrojnog prepisivanja pri izračunu veličine spremnika IGMPv3 podataka što može rezutirati malim spremnikom za tražene operacije. Napadač...

Close