[SCM] Samba Shared Repository - annotated tag samba-4.10.17 created

Karolin Seeger kseeger at samba.org
Thu Jul 2 07:53:51 UTC 2020


The annotated tag, samba-4.10.17 has been created
        at  8550538426a78ea97c945ba200787646cb7e90be (tag)
   tagging  e88b0e44899ad462abef61d0082b10d9a4e2c9cb (commit)
  replaces  samba-4.10.16
 tagged by  Karolin Seeger
        on  Thu Jun 25 13:16:00 2020 +0200

- Log -----------------------------------------------------------------
samba: tag release samba-4.10.17
-----BEGIN PGP SIGNATURE-----

iF0EABECAB0WIQRS+8C4bZVLCEMyTNxvM5FbZWi36gUCXvSHcAAKCRBvM5FbZWi3
6lGtAJ9f3ipFAGOV9icftp+oTs+fPPg0JgCfekIM4IuDbKmKvG+RCzntt71nkKk=
=rBnp
-----END PGP SIGNATURE-----

Andrew Bartlett (10):
      CVE-2020-10730: vlv: Use strcmp(), not strncmp() checking the NULL terminated control OIDs
      CVE-2020-10730: vlv: Do not re-ASQ search the results of an ASQ search with VLV
      CVE-2020-10730: selftest: Add test to confirm VLV interaction with ASQ
      CVE-2020-10730: vlv: Another workaround for mixing ASQ and VLV
      CVE-2020-10730: selftest: Add test to show that VLV and paged_results are incompatible
      CVE-2020-10730: dsdb: Fix crash when vlv and paged_results are combined
      CVE-2020-10730: dsdb: Ban the combination of paged_results and VLV
      CVE-2020-14303 Ensure an empty packet will not DoS the NBT server
      CVE-2020-10760 dsdb: Ensure a proper talloc tree for saved controls
      CVE-2020-10760 dsdb: Add tests for paged_results and VLV over the Global Catalog port

Douglas Bagnall (7):
      CVE-2020-10745: pytests: hand-rolled invalid dns/nbt packet tests
      CVE-2020-10745: librpc/tests: cmocka tests of dns and ndr strings
      CVE-2020-10745: ndr_dns: move ndr_push_dns_string core into sharable function
      CVE-2020-10745: ndr/dns_utils: correct a comment
      CVE-2020-10745: ndr_dns: do not allow consecutive dots
      CVE-2020-10745: dns_util/push: forbid names longer than 255 bytes
      CVE-2020-10745: ndr/dns-utils: prepare for NBT compatibility

Gary Lockyer (5):
      CVE-2020-10730: s4 dsdb paged_results: Prevent repeat call of ldb_module_done
      CVE-2020-10730: s4 dsdb vlv_pagination: Prevent repeat call of ldb_module_done
      CVE-2020-10730: lib ldb: Check if ldb_lock_backend_callback called twice
      ldb: Bump version to 1.5.8
      CVE-2020-14303: s4 nbt: fix busy loop on empty UDP packet

Karolin Seeger (3):
      VERSION: Bump version up to 4.10.17...
      WHATSNEW: Add release notes for Samba 4.10.17.
      VERSION: Diable GIT_SNAPSHOT for the 4.10.17 release.

-----------------------------------------------------------------------


-- 
Samba Shared Repository



More information about the samba-cvs mailing list