From cbf318b29dde8496a5d724c78e64cb5163b9a558 Mon Sep 17 00:00:00 2001 From: Kirill Ponomarev Date: Thu, 24 May 2007 07:54:25 +0000 Subject: An update of net/samba3 to the 3.0.25 version plus security fixes. Major features included in the 3.0.25 code base are: o Significant improvements in the winbind off-line logon support. o Support for secure DDNS updates as part of the 'net ads join' process. o Rewritten IdMap interface which allows for TTL based caching and per domain backends. o New plug-in interface for the "winbind nss info" parameter. o New file change notify subsystem which is able to make use of inotify on Linux. o Support for passing Windows security descriptors to a VFS plug-in allowing for multiple Unix ACL implements to running side by side on the Same server. o Improved compatibility with Windows Vista clients including improved read performance with Linux servers. o Man pages for IdMap and VFS plug-ins. Security Fixes included in the Samba 3.0.25 release are: o CVE-2007-2444 Versions: Samba 3.0.23d - 3.0.25pre2 Local SID/Name translation bug can result in user privilege elevation o CVE-2007-2446 Versions: Samba 3.0.0 - 3.0.24 Multiple heap overflows allow remote code execution o CVE-2007-2447 Versions: Samba 3.0.0 - 3.0.24 Unescaped user input parameters are passed as arguments to /bin/sh allowing for remote command execution PR: ports/112836 Submitted by: maintainer Approved by: portmgr (self) --- net/samba3/files/patch-script_installswat.sh | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'net/samba3/files/patch-script_installswat.sh') diff --git a/net/samba3/files/patch-script_installswat.sh b/net/samba3/files/patch-script_installswat.sh index 34af2088a74e..cbd26ed4668d 100644 --- a/net/samba3/files/patch-script_installswat.sh +++ b/net/samba3/files/patch-script_installswat.sh @@ -1,5 +1,5 @@ ---- script/installswat.sh.orig Thu Apr 20 04:29:42 2006 -+++ script/installswat.sh Tue Apr 25 02:12:10 2006 +--- ./script/installswat.sh.orig Thu Mar 1 05:55:02 2007 ++++ ./script/installswat.sh Tue Apr 17 02:06:59 2007 @@ -21,8 +21,7 @@ ;; esac -- cgit v1.2.3