This bug was fixed in the package samba - 2:3.4.7~dfsg-1ubuntu1 --------------- samba (2:3.4.7~dfsg-1ubuntu1) lucid; urgency=low
* Merge from debian testing. Remaining changes: + debian/patches/VERSION.patch: - set SAMBA_VERSION_SUFFIX to Ubuntu. + debian/smb.conf: - Add "(Samba, Ubuntu)" to server string. - Comment out the default [homes] share, and add a comment about "valid users = %s" to show users how to restrict access to \\server\username to only username. - Set 'usershare allow guests', so that usershare admins are allowed to create public shares in additon to authenticated ones. - add map to guest = Bad user, maps bad username to gues access. + debian/samba-common.conf: - Do not change priority to high if dhclient3 is installed. - Use priority medium instead of high for the workgroup question. + debian/mksambapasswd.awk: - Do not add user with UID less than 1000 to smbpasswd. + debian/control: - Make libswbclient0 replace/conflict with hardy's likewise-open. - Don't build against ctdb, since its not in main yet. + debian/rules: - Enable "native" PIE hardening. - Add BIND_NOW to maximize benefit of RELRO hardening. + Add ufw integration: - Created debian/samba.ufw.profile. - debian/rules, debian/samba.dirs, debian/samba.files: install + Add apport hook: - Created debian/source_samba.py. - debian/rules, debian/samba.dirs, debian/samba-common-bin.files: install + debian/control: Recommend keyutils for smbfs (LP: #493565) + debian/patches/ubuntu-gecos-fix.patch: Fix gecos parsing backported from Samba 3.5.x (LP: #182572) + debian/samba.postinst: Avoid scary pdbedit warnings on first import. (LP: #24741) + debian/samba.logrotate: Make it upstart compatible (LP: #529290) + debian/samba-common.dhcp: Fix typo to get a proper parsing in /etc/samba/dhcp. (LP: #507374) + Dropped: debian/patches/debian/patches/security-CVE-2010-0728.patch: Included upstream. samba (2:3.4.7~dfsg-1) unstable; urgency=low [ Steve Langasek ] * Add a PAM profile for pam_winbind. Closes: #566890, LP: #282751. * Add the correct versioned build dependency on libtalloc-dev as we need 2.0.1 to build samba. Closes: #572603 * Add avr32 to arches with a build dependency on ctdb. Closes: #572126 [ Christian Perrier ] * New upstream release. Security fix: all smbd processes inherited CAP_DAC_OVERRIDE capabilities, allowing all file system access to be allowed even when permissions should have denied access. -- Chuck Short <zul...@ubuntu.com> Fri, 19 Mar 2010 21:17:40 +0000 ** Changed in: samba (Ubuntu) Status: Triaged => Fix Released ** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2010-0728 -- Winbind package does not provide PAM configuration https://bugs.launchpad.net/bugs/282751 You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs