This bug was fixed in the package samba - 2:3.4.7~dfsg-1ubuntu1

---------------
samba (2:3.4.7~dfsg-1ubuntu1) lucid; urgency=low

  * Merge from debian testing.  Remaining changes:
    + debian/patches/VERSION.patch:
      - set SAMBA_VERSION_SUFFIX to Ubuntu.
    + debian/smb.conf:
      - Add "(Samba, Ubuntu)" to server string.
      - Comment out the default [homes] share, and add a comment about "valid 
users = %s"
        to show users how to restrict access to \\server\username to only 
username.
      - Set 'usershare allow guests', so that usershare admins are allowed to 
create
        public shares in additon to authenticated ones.
      - add map to guest = Bad user, maps bad username to gues access.
    + debian/samba-common.conf:
      - Do not change priority to high if dhclient3 is installed.
      - Use priority medium instead of high for the workgroup question.
    + debian/mksambapasswd.awk:
      - Do not add user with UID less than 1000 to smbpasswd.
    + debian/control:
      - Make libswbclient0 replace/conflict with hardy's likewise-open.
      - Don't build against ctdb, since its not in main yet.
    + debian/rules:
      - Enable "native" PIE hardening.
      - Add BIND_NOW to maximize benefit of RELRO hardening.
    + Add ufw integration:
      - Created debian/samba.ufw.profile.
      - debian/rules, debian/samba.dirs, debian/samba.files: install
    + Add apport hook:
      - Created debian/source_samba.py.
      - debian/rules, debian/samba.dirs, debian/samba-common-bin.files: install
    + debian/control: Recommend keyutils for smbfs (LP: #493565)
    + debian/patches/ubuntu-gecos-fix.patch: Fix gecos parsing backported from 
Samba 3.5.x (LP: #182572)
    + debian/samba.postinst: Avoid scary pdbedit warnings on first import. (LP: 
#24741)
    + debian/samba.logrotate: Make it upstart compatible (LP: #529290)
    + debian/samba-common.dhcp: Fix typo to get a proper parsing in 
/etc/samba/dhcp. (LP: #507374)
    + Dropped:
      debian/patches/debian/patches/security-CVE-2010-0728.patch: Included 
upstream.

samba (2:3.4.7~dfsg-1) unstable; urgency=low

  [ Steve Langasek ]
  * Add a PAM profile for pam_winbind.  Closes: #566890, LP: #282751.
  * Add the correct versioned build dependency on libtalloc-dev as
    we need 2.0.1 to build samba. Closes: #572603
  * Add avr32 to arches with a build dependency on ctdb. Closes: #572126

  [ Christian Perrier ]
  * New upstream release. Security fix: all smbd processes inherited
    CAP_DAC_OVERRIDE capabilities, allowing all file system access to be
    allowed even when permissions should have denied access.
 -- Chuck Short <zul...@ubuntu.com>   Fri, 19 Mar 2010 21:17:40 +0000

** Changed in: samba (Ubuntu)
       Status: Triaged => Fix Released

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2010-0728

-- 
Winbind package does not provide PAM configuration
https://bugs.launchpad.net/bugs/282751
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to