Bug 40850 - Samba: security update (4.0)
Samba: security update (4.0)
Status: CLOSED FIXED
Product: UCS
Classification: Unclassified
Component: Security updates
UCS 4.0
Other Linux
: P4 normal (vote)
: UCS 4.0-4-errata
Assigned To: Arvid Requate
Janek Walkenhorst
https://bugzilla.samba.org/show_bug.c...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2016-03-07 14:46 CET by Arvid Requate
Modified: 2016-03-08 17:32 CET (History)
0 users

See Also:
What kind of report is it?: ---
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional): Security
Max CVSS v3 score:
requate: Patch_Available+


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Arvid Requate univentionstaff 2016-03-07 14:46:05 CET
+++ This bug was initially created as a clone of Bug #40847 +++

There will be a security update on the 8th of March, currently embargoed:

* Getting and setting Windows ACLs on symlinks can change permissions on link target (CVE-2015-7560)
Comment 1 Arvid Requate univentionstaff 2016-03-07 14:48:30 CET
The package has been rebuilt with the patch in errata4.0-4.

Advisory: samba.yaml
Comment 2 Felix Botner univentionstaff 2016-03-07 15:27:13 CET
Die folgenden Pakete haben unerfüllte Abhängigkeiten:
 samba : Hängt ab von: samba-common (= 2:4.2.3-1.822.201512142149) aber 2:4.2.3-1.831.201603071338 soll installiert werden
         Hängt ab von: samba-common-bin (= 2:4.2.3-1.822.201512142149) soll aber nicht installiert werden
         Hängt ab von: samba-dsdb-modules soll aber nicht installiert werden
         Hängt ab von: samba-libs (= 2:4.2.3-1.822.201512142149) aber 2:4.2.3-1.795.201510081809 soll installiert werden
         Empfiehlt: attr soll aber nicht installiert werden
Comment 3 Arvid Requate univentionstaff 2016-03-07 16:51:30 CET
For some reason the amd64 build failed. I've split up the patch and rebuilt the package.
Comment 4 Felix Botner univentionstaff 2016-03-07 17:20:27 CET
FAILED  - YAML, remove the comma at the end of the message

OK - built witch patches
OK - installation
OK - Basic checks (share access, windows join)
Comment 5 Arvid Requate univentionstaff 2016-03-07 19:00:52 CET
> FAILED  - YAML, remove the comma at the end of the message

I converted the "," into a "."
Comment 6 Janek Walkenhorst univentionstaff 2016-03-08 16:01:24 CET
Advisory: OK
Tests: OK
Patch: OK
Comment 7 Janek Walkenhorst univentionstaff 2016-03-08 17:32:05 CET
<http://errata.software-univention.de/ucs/4.0/405.html>