Package samba-common-libs: Information

    Binary package: samba-common-libs
    Version: 4.14.10-alt2
    Architecture: i586
    Build time:  Dec 3, 2021, 09:19 PM in the task #288706
    Source package: samba
    Category: System/Libraries
    Report package bug
    License: GPLv3+ and LGPLv3+
    Summary: Samba common libraries
    Description: 
    The samba-common-libs package contains the common libraries needed by modules that
    link against the SMB, RPC and other protocols provided by the Samba suite.

    Maintainer: Evgeny Sinelnikov


    Last changed


    Nov. 13, 2021 Evgeny Sinelnikov 4.14.10-alt2
    - Add support samba-tool-plus alternative for samba-dc build with heimdal.
    Nov. 7, 2021 Evgeny Sinelnikov 4.14.10-alt1
    - Update to latest security release of Samba 4.14
    - Security fixes:
      + CVE-2016-2124:  SMB1 client connections can be downgraded to plaintext
                        authentication.
                        https://www.samba.org/samba/security/CVE-2016-2124.html
      + CVE-2020-25717: A user on the domain can become root on domain members.
                        https://www.samba.org/samba/security/CVE-2020-25717.html
      + CVE-2020-25718: Samba AD DC did not correctly sandbox Kerberos tickets
                        issued by an RODC.
                        https://www.samba.org/samba/security/CVE-2020-25718.html
      + CVE-2020-25719: Samba AD DC did not always rely on the SID and PAC in
                        Kerberos tickets.
                        https://www.samba.org/samba/security/CVE-2020-25719.html
      + CVE-2020-25721: Kerberos acceptors need easy access to stable AD identifiers
                        (eg objectSid).
                        https://www.samba.org/samba/security/CVE-2020-25721.html
      + CVE-2020-25722: Samba AD DC did not do suffienct access and conformance
                        checking of data stored.
                        https://www.samba.org/samba/security/CVE-2020-25722.html
      + CVE-2021-3738:  Use after free in Samba AD DC RPC server.
                        https://www.samba.org/samba/security/CVE-2021-3738.html
      + CVE-2021-23192: Subsequent DCE/RPC fragment injection vulnerability.
                        https://www.samba.org/samba/security/CVE-2021-23192.html
    Nov. 7, 2021 Evgeny Sinelnikov 4.14.9-alt2
    - Rebuild with updated ldb-2.3.2 with backported all C code changes from
      ldb-2.4.1 to be available for Samba 4.14.x.