[SCM] Samba Shared Repository - annotated tag samba-4.17.2 created

Jule Anger janger at samba.org
Tue Oct 25 09:08:32 UTC 2022


The annotated tag, samba-4.17.2 has been created
        at  9e6f2316ec151c7a6d508500299ec70d42367788 (tag)
   tagging  21f995104c870cdfbdb0db61e290b2da8bc87ee1 (commit)
  replaces  samba-4.17.1
 tagged by  Jule Anger
        on  Mon Oct 24 12:53:28 2022 +0200

- Log -----------------------------------------------------------------
samba: tag release samba-4.17.2
-----BEGIN PGP SIGNATURE-----
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=dOLx
-----END PGP SIGNATURE-----

Joseph Sutton (11):
      CVE-2022-3437 third_party/heimdal: Remove __func__ compatibility workaround
      CVE-2022-3437 third_party/heimdal_build: Add gssapi-subsystem subsystem
      CVE-2022-3437 s4/auth/tests: Add unit tests for unwrap_des3()
      CVE-2022-3437 third_party/heimdal: Use constant-time memcmp() for arcfour unwrap
      CVE-2022-3437 third_party/heimdal: Use constant-time memcmp() in unwrap_des3()
      CVE-2022-3437 third_party/heimdal: Don't pass NULL pointers to memcpy() in DES unwrap
      CVE-2022-3437 third_party/heimdal: Avoid undefined behaviour in _gssapi_verify_pad()
      CVE-2022-3437 third_party/heimdal: Check the result of _gsskrb5_get_mech()
      CVE-2022-3437 third_party/heimdal: Check buffer length against overflow for DES{,3} unwrap
      CVE-2022-3437 third_party/heimdal: Check for overflow in _gsskrb5_get_mech()
      CVE-2022-3437 third_party/heimdal: Pass correct length to _gssapi_verify_pad()

Jule Anger (3):
      VERSION: Bump version up to Samba 4.17.2...
      WHATSNEW: Add release notes for Samba 4.17.2.
      VERSION: Disable GIT_SNAPSHOT for the 4.17.2 release.

Volker Lendecke (4):
      CVE-2022-3592 smbd: No empty path components in openat_pathref_dirfsp_nosymlink()
      CVE-2022-3592 torture3: Show that our symlink traversal checks are insecure
      CVE-2022-3592 lib: add subdir_of() to source3/lib/util_path.c
      CVE-2022-3592 smbd: Slightly simplify filename_convert_dirfsp()

-----------------------------------------------------------------------


-- 
Samba Shared Repository



More information about the samba-cvs mailing list