pkgsrc/net/samba4
adam c8a48799fe ldb: updated to 2.2.1; samba: updated to 4.13.7
==============================
                   Release Notes for Samba 4.13.7
                           March 24, 2021
                   ==============================


This is a follow-up release to depend on the correct ldb version. This is only
needed when building against a system ldb library.

This is a security release in order to address the following defects:

o CVE-2020-27840: Heap corruption via crafted DN strings.
o CVE-2021-20277: Out of bounds read in AD DC LDAP server.


=======
Details
=======

o  CVE-2020-27840:
   An anonymous attacker can crash the Samba AD DC LDAP server by sending easily
   crafted DNs as part of a bind request. More serious heap corruption is likely
   also possible.

o  CVE-2021-20277:
   User-controlled LDAP filter strings against the AD DC LDAP server may crash
   the LDAP server.

For more details, please refer to the security advisories.


Changes since 4.13.6
--------------------

o  Release with dependency on ldb version 2.2.1.
2021-03-24 16:33:46 +00:00
..
files samba4: Add winbind SMF instance and tidy. 2020-12-02 10:54:15 +00:00
patches samba4: updated to 4.13.2 2020-11-12 06:37:18 +00:00
buildlink3.mk Revbump for openpam cppflags change months ago, belatedly. 2020-12-04 04:55:41 +00:00
DESCR net/samba*: Update DESCR 2020-03-13 22:12:38 +00:00
distinfo ldb: updated to 2.2.1; samba: updated to 4.13.7 2021-03-24 16:33:46 +00:00
hacks.mk
Makefile ldb: updated to 2.2.1; samba: updated to 4.13.7 2021-03-24 16:33:46 +00:00
MESSAGE.rcd
options.mk samba4: updated to 4.13.2 2020-11-12 06:37:18 +00:00
PLIST samba4: fix PLIST 2021-01-28 13:17:16 +00:00
PLIST.Linux samba4: add missing entries to PLIST.Linux 2021-01-18 09:24:32 +00:00
PLIST.SunOS