The annotated tag, samba-4.6.1 has been created at 90f5841f72744cea3145f06b1c99711c2c3fb19e (tag) tagging 1a8f3cfb4ebc21a0889c7692591ae41a46d7dfb2 (commit) replaces samba-4.6.0 tagged by Karolin Seeger on Thu Mar 23 09:19:58 2017 +0100
- Log ----------------------------------------------------------------- samba: tag release samba-4.6.1 -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iD8DBQBY04UubzORW2Vot+oRAl3GAJ0WIQXaLDiHn6mdNhuIsBwi8WHBswCfZzet l3K1PSH5fiSKlTWF5mzwG/4= =5aXb -----END PGP SIGNATURE----- Jeremy Allison (11): CVE-2017-2619: s3: smbd: Create wrapper function for OpenDir in preparation for making robust. CVE-2017-2619: s3: smbd: Opendir_internal() early return if SMB_VFS_OPENDIR failed. CVE-2017-2619: s3: smbd: Create and use open_dir_safely(). Use from OpenDir(). CVE-2017-2619: s3: smbd: OpenDir_fsp() use early returns. CVE-2017-2619: s3: smbd: OpenDir_fsp() - Fix memory leak on error. CVE-2017-2619: s3: smbd: Move the reference counting and destructor setup to just before retuning success. CVE-2017-2619: s3: smbd: Correctly fallback to open_dir_safely if FDOPENDIR not supported on system. CVE-2017-2619: s3: smbd: Remove O_NOFOLLOW guards. We insist on O_NOFOLLOW existing. CVE-2017-2619: s3: smbd: Move special handling of symlink errno's into a utility function. CVE-2017-2619: s3: smbd: Add the core functions to prevent symlink open races. CVE-2017-2619: s3: smbd: Use the new non_widelink_open() function. Karolin Seeger (3): VERSION: Bump version up to 4.6.1... WHATSNEW: Add release notes for Samba 4.6.1. VERSION: Disable GIT_SNAPSHOTS for the 4.6.1 release. Ralph Boehme (2): CVE-2017-2619: s3/smbd: re-open directory after dptr_CloseDir() CVE-2017-2619: s4/torture: add SMB2_FIND tests with SMB2_CONTINUE_FLAG_REOPEN flag ----------------------------------------------------------------------- -- Samba Shared Repository