Revisions of samba

Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 527524 from James McDonough's avatar James McDonough (jmcdough) (revision 222)
- CVE-2017-12163: Prevent client short SMB1 write from
  writing server memory to file; (bso#13020); (bsc#1058624).

- CVE-2017-12150: Some code path don't enforce smb signing,
  when they should; (bso#12997); (bsc#1058622).

- CVE-2017-12151: Keep required encryption across SMB3 dfs
  redirects; (bso#12996); (bsc#1058565). (forwarded request 527518 from npower)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 517193 from David Disseldorp's avatar David Disseldorp (dmdiss) (revision 220)
- Update to 4.6.7; (bsc#1054017)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 512298 from David Disseldorp's avatar David Disseldorp (dmdiss) (revision 218)
- fix cephwrap_chdir(); (bsc#1048790).
- Update to 4.6.6
  + CVE-2017-11103: Orpheus' Lyre KDC-REP service name validation;
    (bsc#1048278).
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 505266 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 216)
Automatic submission by obs-autosubmit
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 501776 from David Disseldorp's avatar David Disseldorp (dmdiss) (revision 215)
- Update to 4.6.5; (bsc#1040157)
  + Specifying CTDB_LOGGING=syslog:nonblocking causes ctdbd to crash at
    startup; (bso#12814).
  + vfs_expand_msdfs tries to open the remote address as a file path;
    (bso#12687).
  + PANIC (pid 1096): assert failed: lease_type_is_exclusive(e_lease_type);
    (bso#12798).
  + With clustering get update_num_read_oplocks failed and PANIC:
    num_share_modes == 1 assertion failure; (bso#11844).
  + contend_level2_oplocks_begin_default oplock optimisation doesn't carry
    over to leases; (bso#12766).
  + `ctdb nodestatus` incorrectly displays status for all nodes with wrong
    exit code; (bso#12802).
  + CTDB can spin hard on revoking readonly delegations if a node becomes
    disconnected; (bso#12697).
  + Printing a share mode entry with leases can crash in the ndr code;
    (bso#12793).
  + Fix flakey unit tests for eventd; (bso#12792).
  + CTDB daemon crashes if built with clang; (bso#12770).
  + smbcacls fails if no password is specified; (bso#12765).
  + idmap_rfc2307: Lookup of more than two SIDs fails; (bso#12757).
  + samba-tool user syncpasswords doesn't trigger the script when a user gets
    removed; (bso#12767).
  + systemd: fix detection of libsystemd; (bso#12764).
  + Notify subsystem only maps first inotify mask to Windows notify filter;
    (bso#12760).
  + Allow passing trusted domain password as plain-text to PASSDB layer;
    (bso#12751).
  + Can't case-rename files with vfs_fruit; (bso#12749).
  + wrong sid->uid mapping for SIDs residing in sIDHistory; (bso#12702).
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 499449 from David Disseldorp's avatar David Disseldorp (dmdiss) (revision 214)
- Revert explicit winbind %{version}-%{release} dependency.
  + The ABI has stabilized since (bsc#936909), so remove to fix cross-media
    dependencies; (bsc#1037899).
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 497890 from David Disseldorp's avatar David Disseldorp (dmdiss) (revision 213)
- Fix CVE-2017-7494 remote code execution from a writable share;
  (bso#12780); (bsc#1038231).
Yuchen Lin's avatar Yuchen Lin (maxlin_factory) accepted request 487103 from David Disseldorp's avatar David Disseldorp (dmdiss) (revision 210)
- Update to 4.6.2
  + remove bso#12721 patches now upstream

- Enable samba-ceph build for openSUSE and SLE12SP3+; (fate#321622).
  + x86-64 and aarch64

- Enable librados CTDB lock helper for samba-ceph package; (fate#321622).

- Build and install the html man pages (bsc#1021907).

- Fix CVE-2017-2619 regression with "follow symlinks = no";
  (bso#12721).

- Update to 4.6.1
  + symlink race permits opening files outside share directory;
    CVE-2017-2619; (bso#12496); (bsc#1027147)
  + testparm checks for valid idmap parameters
  + add new krb client encryption types
  + support for printer driver upload from windows 10
  + inherit owner = 'unix only' for improved quota support
  + improved CTDB event support
  + new primary group support for idmap_ad
  + idmap_hash deprecated
  + mvxattr added to recursively rename extended attributes

- Remove chkconfig requirements for systemd systems

 - Don't call insserv if systemd is used

- Fix check if we need to require insserv
Ludwig Nussel's avatar Ludwig Nussel (lnussel_factory) accepted request 447040 from James McDonough's avatar James McDonough (jmcdough) (revision 206)
Update to 4.5.3 for CVE-2016-2123 (bsc#1014437) CVE-2016-2125 (bsc#1014441) CVE-2016-2126 (bsc#1014442) (forwarded request 447039 from jmcdough)
Displaying revisions 81 - 100 of 305
openSUSE Build Service is sponsored by