Accepting request 527518 from home:npower:sept-update-factory

- CVE-2017-12163: Prevent client short SMB1 write from
  writing server memory to file; (bso#13020); (bsc#1058624).

- CVE-2017-12150: Some code path don't enforce smb signing,
  when they should; (bso#12997); (bsc#1058622).

- CVE-2017-12151: Keep required encryption across SMB3 dfs
  redirects; (bso#12996); (bsc#1058565).

OBS-URL: https://build.opensuse.org/request/show/527518
OBS-URL: https://build.opensuse.org/package/show/network:samba:STABLE/samba?expand=0&rev=572
This commit is contained in:
James McDonough 2017-09-20 12:13:02 +00:00 committed by Git OBS Bridge
parent ae1ea30911
commit aa792ab3bb
4 changed files with 22 additions and 4 deletions

View File

@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:73194d133518d574e7ac3d30a003bdc7aeeb2d7d7b488604c23452fb20063d24
size 25953146

View File

@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:d19769fcfea4cdfef00f7ae92b4278a65adb6badc9a4308018c55f9316db50b5
size 26226940

View File

@ -1,3 +1,21 @@
-------------------------------------------------------------------
Thu Sep 14 20:41:11 UTC 2017 - aaptel@suse.com
- CVE-2017-12163: Prevent client short SMB1 write from
writing server memory to file; (bso#13020); (bsc#1058624).
-------------------------------------------------------------------
Thu Sep 14 19:03:56 UTC 2017 - nopower@suse.com
- CVE-2017-12150: Some code path don't enforce smb signing,
when they should; (bso#12997); (bsc#1058622).
-------------------------------------------------------------------
Thu Sep 14 14:39:37 UTC 2017 - nopower@suse.com
- CVE-2017-12151: Keep required encryption across SMB3 dfs
redirects; (bso#12996); (bsc#1058565).
-------------------------------------------------------------------
Thu Aug 31 08:31:51 UTC 2017 - aaptel@suse.com

View File

@ -108,7 +108,7 @@ BuildRequires: librados-devel
%define BRANCH %{version}
%global with_mitkrb5 1
%global with_dc 0
Version: 4.6.7+git.38.90b2cdb4f22
Version: 4.6.7+git.49.562d44faa9d
Release: 0
Url: https://www.samba.org/
Obsoletes: samba-32bit < %{version}