The branch, master has been updated via e0c0869 Add release notes for Samba 4.5.14 and 4.4.16. from 4c18f0f NEWS[4.6.8]: Samba 4.6.8, 4.5.14 and 4.4.16 Available for Download
https://git.samba.org/?p=samba-web.git;a=shortlog;h=master - Log ----------------------------------------------------------------- commit e0c086915750638b12c6883f7baa456149d2a002 Author: Karolin Seeger <ksee...@samba.org> Date: Wed Sep 20 10:26:29 2017 +0200 Add release notes for Samba 4.5.14 and 4.4.16. Signed-off-by: Karolin Seeger <ksee...@samba.org> ----------------------------------------------------------------------- Summary of changes: history/{samba-4.6.8.html => samba-4.4.16.html} | 30 ++++++++++----------- history/{samba-4.6.8.html => samba-4.5.14.html} | 36 ++++++++++--------------- 2 files changed, 28 insertions(+), 38 deletions(-) copy history/{samba-4.6.8.html => samba-4.4.16.html} (65%) copy history/{samba-4.6.8.html => samba-4.5.14.html} (57%) Changeset truncated at 500 lines: diff --git a/history/samba-4.6.8.html b/history/samba-4.4.16.html similarity index 65% copy from history/samba-4.6.8.html copy to history/samba-4.4.16.html index cfd082b..a83edc7 100644 --- a/history/samba-4.6.8.html +++ b/history/samba-4.4.16.html @@ -2,31 +2,31 @@ "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> -<title>Samba 4.6.8 - Release Notes</title> +<title>Samba 4.4.15 - Release Notes</title> </head> <body> -<H2>Samba 4.6.8 Available for Download</H2> +<H2>Samba 4.4.15 Available for Download</H2> <p> -<a href="https://download.samba.org/pub/samba/stable/samba-4.6.8.tar.gz">Samba 4.6.8 (gzipped)</a><br> -<a href="https://download.samba.org/pub/samba/stable/samba-4.6.8.tar.asc">Signature</a> +<a href="https://download.samba.org/pub/samba/stable/samba-4.4.16.tar.gz">Samba 4.4.16 (gzipped)</a><br> +<a href="https://download.samba.org/pub/samba/stable/samba-4.4.16.tar.asc">Signature</a> </p> <p> -<a href="https://download.samba.org/pub/samba/patches/samba-4.6.7-4.6.8.diffs.gz">Patch (gzipped) against Samba 4.6.7</a><br> -<a href="https://download.samba.org/pub/samba/patches/samba-4.6.7-4.6.8.diffs.asc">Signature</a> +<a href="https://download.samba.org/pub/samba/patches/samba-4.4.15-4.4.16.diffs.gz">Patch (gzipped) against Samba 4.4.14</a><br> +<a href="https://download.samba.org/pub/samba/patches/samba-4.4.15-4.4.16.diffs.asc">Signature</a> </p> <p> <pre> - ============================= - Release Notes for Samba 4.6.8 - September 20, 2017 - ============================= + ============================== + Release Notes for Samba 4.4.16 + September 20, 2017 + ============================== This is a security release in order to address the following defects: o CVE-2017-12150 (SMB1/2/3 connections may not require signing where they should) -o CVE-2017-12151 (SMB3 connections don't keep encryption across DFS redirects) +o CVE-2017-12151 (SMB3 connections don't keep encryption across DFS redirects) o CVE-2017-12163 (Server memory information leak over SMB1) @@ -53,8 +53,8 @@ For more details and workarounds, please see the security advisories: o https://www.samba.org/samba/security/CVE-2017-12163.html -Changes since 4.6.7: --------------------- +Changes since 4.4.15: +--------------------- o Jeremy Allison <j...@samba.org> * BUG 12836: s3: smbd: Fix a read after free if a chained SMB1 call goes @@ -69,10 +69,8 @@ o Ralph Boehme <s...@samba.org> o Stefan Metzmacher <me...@samba.org> * BUG 12996: CVE-2017-12151: Keep required encryption across SMB3 dfs redirects. - * BUG 12997: CVE-2017-12150: Some code path don't enforce smb signing + * BUG 12997: CVE-2017-12150: Some code path don't enforce smb signing when they should. - - </pre> </p> </body> diff --git a/history/samba-4.6.8.html b/history/samba-4.5.14.html similarity index 57% copy from history/samba-4.6.8.html copy to history/samba-4.5.14.html index cfd082b..d08f587 100644 --- a/history/samba-4.6.8.html +++ b/history/samba-4.5.14.html @@ -2,31 +2,31 @@ "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> <head> -<title>Samba 4.6.8 - Release Notes</title> +<title>Samba 4.5.14 - Release Notes</title> </head> <body> -<H2>Samba 4.6.8 Available for Download</H2> +<H2>Samba 4.5.14 Available for Download</H2> <p> -<a href="https://download.samba.org/pub/samba/stable/samba-4.6.8.tar.gz">Samba 4.6.8 (gzipped)</a><br> -<a href="https://download.samba.org/pub/samba/stable/samba-4.6.8.tar.asc">Signature</a> +<a href="https://download.samba.org/pub/samba/stable/samba-4.5.14.tar.gz">Samba 4.5.14 (gzipped)</a><br> +<a href="https://download.samba.org/pub/samba/stable/samba-4.5.14.tar.asc">Signature</a> </p> <p> -<a href="https://download.samba.org/pub/samba/patches/samba-4.6.7-4.6.8.diffs.gz">Patch (gzipped) against Samba 4.6.7</a><br> -<a href="https://download.samba.org/pub/samba/patches/samba-4.6.7-4.6.8.diffs.asc">Signature</a> +<a href="https://download.samba.org/pub/samba/patches/samba-4.5.13-4.5.14.diffs.gz">Patch (gzipped) against Samba 4.5.12</a><br> +<a href="https://download.samba.org/pub/samba/patches/samba-4.5.13-4.5.14.diffs.asc">Signature</a> </p> <p> <pre> - ============================= - Release Notes for Samba 4.6.8 + ============================== + Release Notes for Samba 4.5.14 September 20, 2017 - ============================= + ============================== This is a security release in order to address the following defects: o CVE-2017-12150 (SMB1/2/3 connections may not require signing where they should) -o CVE-2017-12151 (SMB3 connections don't keep encryption across DFS redirects) +o CVE-2017-12151 (SMB3 connections don't keep encryption across DFS redirects) o CVE-2017-12163 (Server memory information leak over SMB1) @@ -53,26 +53,18 @@ For more details and workarounds, please see the security advisories: o https://www.samba.org/samba/security/CVE-2017-12163.html -Changes since 4.6.7: --------------------- +Changes since 4.5.13: +--------------------- -o Jeremy Allison <j...@samba.org> - * BUG 12836: s3: smbd: Fix a read after free if a chained SMB1 call goes - async. +o Jeremy Allison <j...@samba.org> * BUG 13020: CVE-2017-12163: s3:smbd: Prevent client short SMB1 write from writing server memory to file. -o Ralph Boehme <s...@samba.org> - * BUG 12885: s3/smbd: Let non_widelink_open() chdir() to directories - directly. - o Stefan Metzmacher <me...@samba.org> * BUG 12996: CVE-2017-12151: Keep required encryption across SMB3 dfs redirects. - * BUG 12997: CVE-2017-12150: Some code path don't enforce smb signing + * BUG 12997: CVE-2017-12150: Some code path don't enforce smb signing when they should. - - </pre> </p> </body> -- Samba Website Repository