The annotated tag, samba-4.17.2 has been created at 9e6f2316ec151c7a6d508500299ec70d42367788 (tag) tagging 21f995104c870cdfbdb0db61e290b2da8bc87ee1 (commit) replaces samba-4.17.1 tagged by Jule Anger on Mon Oct 24 12:53:28 2022 +0200
- Log ----------------------------------------------------------------- samba: tag release samba-4.17.2 -----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEEgfXigyvSVFoYl7cTqplEL7aAtiAFAmNWbqgACgkQqplEL7aA tiBa9hAAkviHvVTq6NKJDZBqJP9IO2iINNQGU+CK1W614pHpPjpW/+kKyziffzkV Kh5G68dA2hu913KFtI+FxMSI85BbF2T3kaP6JeDrH+V+FOrRQP9cCnHsMH5U8QSL D7V67yzton9YeOS37XmyRT28nX3Lz7WI/dj98sg35RknHaRg9xkZuyf7mnNqtTbJ 68GdK+hSyYg6hODvcf6tbO9tW15hLFOAndJrOY7ecIRWF8AbmCJ6f3+X4sKNKuqF 1Bt/rMbclzJxo+5nbFCV6A7a88yRAbYmFBkrYZ8dDHR8K1gW436oEsWpYvG/1wOO ipvHdX/duQFKZz1/vj/RZVLyRR5gfV3rhhUy64YuYijumg4k+ItR01zNY6S2xnXc R7nYO/Rfzxdc2inkPgnQBHPghjbrhJrc8WdrczxPHg0n0nJ4P9o5HyKophxL/TEt ctPIDB1m4AZHIVOApz4UpfwF51UF15/IlaIcKyAPTHfqgSUPXyzV7J2HxL8/nuXR LHhYKpdUDoWZ50kBOdg2hF1KYi2NNSdKSTmBttCgDm+02iHrUjghMvzm4nphI3Tu X3PZUnwANYruU9gGyW6poj/KWYLQa6O/yyr8SiFxai0MSdOHSgcWftjs782AGMwu bzEkLqLw9p37kU06eDOcySCoGMfaU21981cP9aLKaluMbhowRzY= =dOLx -----END PGP SIGNATURE----- Joseph Sutton (11): CVE-2022-3437 third_party/heimdal: Remove __func__ compatibility workaround CVE-2022-3437 third_party/heimdal_build: Add gssapi-subsystem subsystem CVE-2022-3437 s4/auth/tests: Add unit tests for unwrap_des3() CVE-2022-3437 third_party/heimdal: Use constant-time memcmp() for arcfour unwrap CVE-2022-3437 third_party/heimdal: Use constant-time memcmp() in unwrap_des3() CVE-2022-3437 third_party/heimdal: Don't pass NULL pointers to memcpy() in DES unwrap CVE-2022-3437 third_party/heimdal: Avoid undefined behaviour in _gssapi_verify_pad() CVE-2022-3437 third_party/heimdal: Check the result of _gsskrb5_get_mech() CVE-2022-3437 third_party/heimdal: Check buffer length against overflow for DES{,3} unwrap CVE-2022-3437 third_party/heimdal: Check for overflow in _gsskrb5_get_mech() CVE-2022-3437 third_party/heimdal: Pass correct length to _gssapi_verify_pad() Jule Anger (3): VERSION: Bump version up to Samba 4.17.2... WHATSNEW: Add release notes for Samba 4.17.2. VERSION: Disable GIT_SNAPSHOT for the 4.17.2 release. Volker Lendecke (4): CVE-2022-3592 smbd: No empty path components in openat_pathref_dirfsp_nosymlink() CVE-2022-3592 torture3: Show that our symlink traversal checks are insecure CVE-2022-3592 lib: add subdir_of() to source3/lib/util_path.c CVE-2022-3592 smbd: Slightly simplify filename_convert_dirfsp() ----------------------------------------------------------------------- -- Samba Shared Repository