From b5f09875bab77cf3e8965898f0b96edb29c98a2ac3a5d8d8bd0465e59f0c7c7d Mon Sep 17 00:00:00 2001 From: Samuel Cabrero Date: Wed, 11 Dec 2019 09:05:28 +0000 Subject: [PATCH] Accepting request 755761 from home:npower:update_samba_4.11.3 - Update to samba 4.11.3 + CVE-2019-14861: DNSServer RPC server crash, an authenticated user can crash the DCE/RPC DNS management server by creating records with matching the zone name; (bso#14138); (bsc#1158108). + CVE-2019-14870: DelegationNotAllowed not being enforced, the DelegationNotAllowed Kerberos feature restriction was not being applied when processing protocol transition requests (S4U2Self), in the AD DC KDC; (bso#14187); (bsc#1158109). OBS-URL: https://build.opensuse.org/request/show/755761 OBS-URL: https://build.opensuse.org/package/show/network:samba:STABLE/samba?expand=0&rev=623 --- samba-4.11.2+git.99.f93cc798f2e.tar.bz2 | 3 --- samba-4.11.3+git.102.3e2882ca77e.tar.bz2 | 3 +++ samba.changes | 13 +++++++++++++ samba.spec | 2 +- 4 files changed, 17 insertions(+), 4 deletions(-) delete mode 100644 samba-4.11.2+git.99.f93cc798f2e.tar.bz2 create mode 100644 samba-4.11.3+git.102.3e2882ca77e.tar.bz2 diff --git a/samba-4.11.2+git.99.f93cc798f2e.tar.bz2 b/samba-4.11.2+git.99.f93cc798f2e.tar.bz2 deleted file mode 100644 index 5e0416e..0000000 --- a/samba-4.11.2+git.99.f93cc798f2e.tar.bz2 +++ /dev/null @@ -1,3 +0,0 @@ -version https://git-lfs.github.com/spec/v1 -oid sha256:4ba85ab3cd961153a618dbfbbcd14932667d12cb522ed5109a49974c28924a6b -size 25032134 diff --git a/samba-4.11.3+git.102.3e2882ca77e.tar.bz2 b/samba-4.11.3+git.102.3e2882ca77e.tar.bz2 new file mode 100644 index 0000000..38ecb69 --- /dev/null +++ b/samba-4.11.3+git.102.3e2882ca77e.tar.bz2 @@ -0,0 +1,3 @@ +version https://git-lfs.github.com/spec/v1 +oid sha256:9f062b1a73167ab221dae65a42b9c7396569ca4ebdd78610377347e776552ae9 +size 25039119 diff --git a/samba.changes b/samba.changes index b623f2f..e8f0e40 100644 --- a/samba.changes +++ b/samba.changes @@ -1,3 +1,16 @@ +------------------------------------------------------------------- +Tue Dec 10 09:57:23 UTC 2019 - Noel Power + +- Update to samba 4.11.3 + + CVE-2019-14861: DNSServer RPC server crash, an authenticated user + can crash the DCE/RPC DNS management server by creating records + with matching the zone name; (bso#14138); (bsc#1158108). + + CVE-2019-14870: DelegationNotAllowed not being enforced, the + DelegationNotAllowed Kerberos feature restriction was not being + applied when processing protocol transition requests (S4U2Self), + in the AD DC KDC; (bso#14187); (bsc#1158109). + +------------------------------------------------------------------- Tue Oct 29 17:22:30 UTC 2019 - Jim McDonough - Update to samba 4.11.2 diff --git a/samba.spec b/samba.spec index 0bca707..0c2b6e3 100644 --- a/samba.spec +++ b/samba.spec @@ -164,7 +164,7 @@ BuildRequires: libtasn1-devel >= 3.8 %else %define build_make_smp_mflags %{?jobs:-j%jobs} %endif -Version: 4.11.2+git.99.f93cc798f2e +Version: 4.11.3+git.102.3e2882ca77e Release: 0 Url: https://www.samba.org/ Obsoletes: samba-32bit < %{version}