Path to this page:
Subject: CVS commit: [pkgsrc-2012Q1] pkgsrc/net
From: Matthias Scheler
Date: 2012-04-11 13:26:30
Message id: 20120411112631.30C3E175DD@cvs.netbsd.org
Log Message:
Pullup ticket #3729 - requested by jdf
net/samba: security update
net/samba35: security update
Revisions pulled up:
- net/samba/Makefile 1.218
- net/samba/distinfo 1.84
- net/samba35/Makefile 1.19
- net/samba35/distinfo 1.11
---
Module Name: pkgsrc
Committed By: asau
Date: Wed Apr 11 09:36:21 UTC 2012
Modified Files:
pkgsrc/net/samba35: Makefile distinfo
Log Message:
Update to Samba 3.5.14
This is a security release in order to address
CVE-2012-1182 ("root" credential remote code execution).
o CVE-2012-1182:
Samba 3.0.x to 3.6.3 are affected by a
vulnerability that allows remote code
execution as the "root" user.
Changes since 3.5.13:
---------------------
o Stefan Metzmacher <metze%samba.org@localhost>
*BUG 8815: PIDL based autogenerated code allows overwriting beyond of
allocated array (CVE-2012-1182).
---
Module Name: pkgsrc
Committed By: asau
Date: Wed Apr 11 09:30:09 UTC 2012
Modified Files:
pkgsrc/net/samba: Makefile distinfo
Log Message:
Update to Samba 3.6.4
This is a security release in order to address
CVE-2012-1182 ("root" credential remote code execution).
o CVE-2012-1182:
Samba 3.0.x to 3.6.3 are affected by a
vulnerability that allows remote code
execution as the "root" user.
Changes since 3.6.3:
--------------------
o Stefan Metzmacher <metze%samba.org@localhost>
*BUG 8815: PIDL based autogenerated code allows overwriting beyond of
allocated array (CVE-2012-1182).
Files: