[SCM] Samba Shared Repository - annotated tag samba-4.12.0rc1 created

Stefan Metzmacher metze at samba.org
Tue Jan 21 16:11:51 UTC 2020


The annotated tag, samba-4.12.0rc1 has been created
        at  f57687fc81fb658531e2dc81435ff70b0eea9b8f (tag)
   tagging  773c5de675049bd6943e0464d7cabcea54d94e47 (commit)
  replaces  ldb-2.1.0
 tagged by  Stefan Metzmacher
        on  Tue Jan 21 17:10:55 2020 +0100

- Log -----------------------------------------------------------------
samba: tag release samba-4.12.0rc1
-----BEGIN PGP SIGNATURE-----

iF0EABECAB0WIQRS+8C4bZVLCEMyTNxvM5FbZWi36gUCXicijwAKCRBvM5FbZWi3
6g5fAJ9JxlFHfGH2YgzDDeHESpiQyJrpDQCfZLRlT2HKV/JlMPTDVu1XynQjvZs=
=oX1O
-----END PGP SIGNATURE-----

Andrew Bartlett (15):
      heimdal_build: Remove bashism from --address-sanitizer build rule
      CVE-2019-14902 selftest: Add test for replication of inherited security descriptors
      CVE-2019-14902 selftest: Add test for a special case around replicated renames
      selftest: Add test to confirm ACL inheritence really happens
      CVE-2019-14902 dsdb: Explain that descriptor_sd_propagation_recursive() is proctected by a transaction
      CVE-2019-14902 dsdb: Add comments explaining why SD propagation needs to be done here
      CVE-2019-14902 dsdb: Ensure we honour both change->force_self and change->force_children
      CVE-2019-14902 repl_meta_data: schedule SD propagation to a renamed DN
      CVE-2019-14902 repl_meta_data: Fix issue where inherited Security Descriptors were not replicated.
      CVE-2019-14902 repl_meta_data: Set renamed = true (and so do SD inheritance) after any rename
      CVE-2019-14902 dsdb: Change basis of descriptor module deferred processing to be GUIDs
      repl_meta_data: Add comment explaining what is being renamed after the conflict is resolved
      repl_meta_data: Do not set *rename = true unless there has been a conflict on the incoming DN
      repl_meta_data: Only reset replMetaData entry for name if we made a conflict name here
      CVE-2019-14907 lib/util: Do not print the failed to convert string into the logs

Anoop C S (1):
      vfs_glusterfs: Return fake fd from pipe() during open

Björn Baumbach (20):
      samba-tool: add --full-dn option to group list command
      samba-tool: add --full-dn option for user getgroups command
      samba-tool tests: add test-case for 'user getgrouops --full-dn'
      python/samdb: add option to specify types of group members
      python/samdb: add more object types for adding/remove group members
      python/samdb: fetch specific error if there are more than one search results
      python/samdb: add 'computer' to the default group member types for group member filters
      python/samdb: adapt search filter for user object type
      python/samdb: adapt search filter for group object type
      python/samdb: add type "all" to search for all common types of group members
      python/samdb: validation of group member types for group member filter
      samba-tool group addmembers: add new option --object-types
      samba-tool group addmembers: add --member-dn option
      samba-tool group removemembers: adapt functionality to addmembers command
      samba-tool group {add,remove}members: allow to use --member-dn in combination with listofmembers
      samba-tool group addmembers: add --member-base-dn option for group member search
      selftest: add test for new samba-tool group addmembers --member-dn option
      selftest: add tests for samba-tool group addmembers --object-types option
      selftest: add test for samba-tool groupmember --member-base-dn option
      samba-tool group addmembers: avoid python traceback on member add failure

David Disseldorp (3):
      vfs_ceph: add .fcntl_fn hook
      vfs_glusterfs: add .fcntl_fn hook
      Revert "vfs_glusterfs: Return fake fd from pipe() during open"

Douglas Bagnall (7):
      fuzz: ldb_dn parsing
      fuzz: add ldb ldif fuzzer
      fuzz: ldb binary decode/enode
      fuzz: add nmblib/parse_packet target
      samba-tool gpo: improve UNC parsing
      fuzzing: check for NULL on ldb_init()
      fuzz_oLschema2ldif: check multiple possible NULLs

Gary Lockyer (1):
      CVE-2019-19344 kcc dns scavenging: Fix use after free in dns_tombstone_records_zone

Günther Deschner (7):
      librpc: add various new clusapi functions and types
      s4-torture: save cluster version in clusapi test context
      s4-torture: fix asserts in clusapi_NodeControl tests
      s4-torture: add clusapi GroupSet tests
      s4-torture: fix copy/paste error in clusapi group test
      s4-torture: increase various bufsizes to better deal with Windows 2019 clusters
      librpc: add clusapi_GroupSetControlCode enum

Jule Anger (17):
      samba-tool tests: Add test-case for 'group list --full-dn'
      samba-tool: add --full-dn option to computer list command
      samba-tool tests: add test case for 'computer list --full-dn'
      samba-tool: add --full-dn option to user list command
      samba-tool tests: add test case for 'user list --full-dn'
      samba-tool: add --full-dn option to group listmembers command
      samba-tool tests: add test-case for 'group listmembers --full-dn'
      samba-tool: add -b/--base-dn option to groups list command
      samba-tool tests: add test-case for 'group list --base-dn'
      samba-tool: add -b/--base-dn option to computer list command
      samba-tool tests: add test-case for 'computer list --base-dn'
      samba-tool: add -b/--base-dn option to contacts list command
      samba-tool tests: add test-case for 'contact list --base-dn'
      samba-tool: add -b/--base-dn option to users list command
      samba-tool tests: add test-case for 'user list --base-dn'
      samba-tool: add -b/--base-dn option to OUs list command
      samba-tool tests: add test-case for 'ou list --base-dn'

Martin Schwenke (7):
      s3: lib: dbwrap_ctdb: Ensure value_valid is set when creating empty record
      util: Add detection of libunwind
      ctdb-tests: Add local_daemons.sh option for recovery lock recheck interval
      ctdb-tests: Put recovery lock for local daemons into a subdirectory
      ctdb-tests: Add some tests to check recovery from recovery lock issues
      ctdb-mutex: Change default re-check time for fcntl helper to 5s
      WHATSNEW: Add CTDB changes for 4.12

Ralph Boehme (1):
      smbd: avoid calling vfs_file_id_from_sbuf() if statinfo is not valid

Samuel Cabrero (1):
      s3:libsmb: Fix querying all names registered within broadcast area

Stefan Metzmacher (2):
      WHATSNEW: Add release note for Samba 4.12.0rc1.
      VERSION: Disable GIT_SNAPSHOT for the 4.12.0rc1 release...

Volker Lendecke (16):
      texpect: Use lib/replace's closefrom()
      texpect: Reformat long line
      texpect: Avoid duplicate sys_write()
      smbd: Move sharename check of conn_force_tdis() into a callback
      smbd: Add close-denied-share message
      torture: Test smbcontrol close-denied-share
      lib: Align integer types
      dsdb: Align integer types
      dsdb: Use write_data() to write to the password check script
      ctdbd: Use struct initialization
      lib: Use closefrom() in smbrun.c
      smbd: Fix claiming version
      testenv: Be more careful deleting environment tmpfiles
      testenv: Properly kill daemons
      testenv: Simplify "in_screen"
      testenv: No "mktemp" for in_screen

-----------------------------------------------------------------------


-- 
Samba Shared Repository



More information about the samba-cvs mailing list