LWN.net Logo

Fedora alert FEDORA-2013-1718 (samba)

From:  updates@fedoraproject.org
To:  package-announce@lists.fedoraproject.org
Subject:  [SECURITY] Fedora 17 Update: samba-3.6.12-1.fc17.1
Date:  Tue, 12 Feb 2013 05:30:46 +0000
Message-ID:  <20130212053046.CAF3520AEF@bastion01.phx2.fedoraproject.org>
Archive-link:  Article, Thread

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2013-1718 2013-02-01 15:49:07 -------------------------------------------------------------------------------- Name : samba Product : Fedora 17 Version : 3.6.12 Release : 1.fc17.1 URL : http://www.samba.org/ Summary : Server and Client software to interoperate with Windows machines Description : Samba is the suite of programs by which a lot of PC-related machines share files, printers, and other information (such as lists of available files and printers). The Windows NT, OS/2, and Linux operating systems support this natively, and add-on packages can enable the same thing for DOS, Windows, VMS, UNIX of all kinds, MVS, and more. This package provides an SMB/CIFS server that can be used to provide network services to SMB/CIFS clients. Samba uses NetBIOS over TCP/IP (NetBT) protocols and does NOT need the NetBEUI (Microsoft Raw NetBIOS frame) protocol. -------------------------------------------------------------------------------- Update Information: Update to 3.6.12 which fixes CVE-2013-0213 and CVE-2013-0214. -------------------------------------------------------------------------------- ChangeLog: * Thu Jan 31 2013 - Andreas Schneider <asn@redhat.com> - 2:3.6.12-1 - Update to 3.6.12 - Fixes CVE-2013-0213 and CVE-2013-0214. - resolves: #905700 - resolves: #906002 - resolves: #905704 * Mon Dec 10 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.10-97 - Update to 3.6.10 * Fri Nov 9 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.9-96 - Update to 3.6.9 * Fri Oct 26 2012 - Andreas Schneider <asn@redhat.com> -2:3.6.8-95 - Fix pam_winbind segfault in pam_sm_authenticate(). - resolves: #870493 * Mon Sep 17 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.8-94 - Update to 3.6.8 * Mon Aug 20 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.7-93 - Update to 3.6.7 * Thu Jul 19 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.6-92 - Fix printing tdb upgrade for 3.6.6 - resolves: #841609 * Tue Jun 26 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.6-91 - Update to 3.6.6 * Thu Jun 21 2012 Andreas Schneider <asn@redhat.com> - 2:3.6.5-90 - Fix ldonfig. - Require systemd for samba-common package. - resolves: #829197 * Mon Jun 18 2012 Andreas Schneider <asn@redhat.com> - 2:3.6.5-89 - Fix usrmove paths. - resolves: #829197 * Tue May 15 2012 Andreas Schneider <asn@redhat.com> - 2:3.6.5-88 - Move tmpfiles.d config to common package as it is needed for smbd and winbind. - Make sure tmpfiles get created after installation. * Wed May 9 2012 Guenther Deschner <gdeschner@redhat.com> - 2:3.6.5-87 - Correctly use system iniparser library -------------------------------------------------------------------------------- References: [ 1 ] Bug #905700 - CVE-2013-0213 samba: clickjacking vulnerability in SWAT https://bugzilla.redhat.com/show_bug.cgi?id=905700 [ 2 ] Bug #905704 - CVE-2013-0214 samba: cross-site request forgery vulnerability in SWAT https://bugzilla.redhat.com/show_bug.cgi?id=905704 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update samba' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-...


(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds