Mon Mar 7 22:45:49 2022 UTC ()
net/samba4: security update to 4.15.5

This is a security release in order to address the following defects:

o CVE-2021-44141: UNIX extensions in SMB1 disclose whether the outside target
                  of a symlink exists.
                  https://www.samba.org/samba/security/CVE-2021-44141.html

o CVE-2021-44142: Out-of-Bound Read/Write on Samba vfs_fruit module.
                  https://www.samba.org/samba/security/CVE-2021-44142.html

o CVE-2022-0336:  Re-adding an SPN skips subsequent SPN conflict checks.
                  https://www.samba.org/samba/security/CVE-2022-0336.html


(thor)
diff -r1.138 -r1.139 pkgsrc/net/samba4/Makefile
diff -r1.73 -r1.74 pkgsrc/net/samba4/distinfo

cvs diff -r1.138 -r1.139 pkgsrc/net/samba4/Makefile (expand / switch to unified diff)

--- pkgsrc/net/samba4/Makefile 2022/03/07 21:40:37 1.138
+++ pkgsrc/net/samba4/Makefile 2022/03/07 22:45:49 1.139
@@ -1,23 +1,23 @@ @@ -1,23 +1,23 @@
1# $NetBSD: Makefile,v 1.138 2022/03/07 21:40:37 thor Exp $ 1# $NetBSD: Makefile,v 1.139 2022/03/07 22:45:49 thor Exp $
2 2
3# WARNING: DO NOT UPDATE WITHOUT RESOLVING THIS ISSUE: 3# WARNING: DO NOT UPDATE WITHOUT RESOLVING THIS ISSUE:
4# 4#
5# Samba 4.14 is incompatible with procfs in NetBSD 9.2 and other 5# Samba 4.14 is incompatible with procfs in NetBSD 9.2 and other
6# BSDs! 6# BSDs!
7# 7#
8# Please do not update without testing on NetBSD 9.2! 8# Please do not update without testing on NetBSD 9.2!
9# 9#
10DISTNAME= samba-4.15.4 10DISTNAME= samba-4.15.5
11CATEGORIES= net 11CATEGORIES= net
12MASTER_SITES= https://download.samba.org/pub/samba/stable/ 12MASTER_SITES= https://download.samba.org/pub/samba/stable/
13 13
14MAINTAINER= pkgsrc-users@NetBSD.org 14MAINTAINER= pkgsrc-users@NetBSD.org
15HOMEPAGE= https://www.samba.org/ 15HOMEPAGE= https://www.samba.org/
16COMMENT= SMB/CIFS protocol server suite 16COMMENT= SMB/CIFS protocol server suite
17LICENSE= gnu-gpl-v3 17LICENSE= gnu-gpl-v3
18 18
19CONFLICTS+= ja-samba-[0-9]* winbind-[0-9]* 19CONFLICTS+= ja-samba-[0-9]* winbind-[0-9]*
20 20
21PYTHON_VERSIONS_INCOMPATIBLE= 27 21PYTHON_VERSIONS_INCOMPATIBLE= 27
22 22
23GCC_REQD+= 4.4 23GCC_REQD+= 4.4

cvs diff -r1.73 -r1.74 pkgsrc/net/samba4/distinfo (expand / switch to unified diff)

--- pkgsrc/net/samba4/distinfo 2022/03/07 21:40:37 1.73
+++ pkgsrc/net/samba4/distinfo 2022/03/07 22:45:49 1.74
@@ -1,18 +1,18 @@ @@ -1,18 +1,18 @@
1$NetBSD: distinfo,v 1.73 2022/03/07 21:40:37 thor Exp $ 1$NetBSD: distinfo,v 1.74 2022/03/07 22:45:49 thor Exp $
2 2
3BLAKE2s (samba-4.15.4.tar.gz) = e0555b6353bbbd77a39f7c725b77c9c1c608a36d8e144a321f73f1104edbf3ac 3BLAKE2s (samba-4.15.5.tar.gz) = 0193cc5a426c605baeb261ed881cd6127749fe9d85f1be9ccce52ca23c266077
4SHA512 (samba-4.15.4.tar.gz) = e55473dd4971816a01880870309ca44f022625cd529511bcf386c865a2e7e79118577ee4866559f607952de47dc0d310d6426bd08dd4293db95ddbbe3982383d 4SHA512 (samba-4.15.5.tar.gz) = 808e0f15931bab18a1e36298528a01a1250efaef9f99508dd620d6936dd4a2fc3ccc64ab9dcc94bd73460697d16d6ca0652ccbcdbe1644ffedce0137d796d3ca
5Size (samba-4.15.4.tar.gz) = 19280813 bytes 5Size (samba-4.15.5.tar.gz) = 19279071 bytes
6SHA1 (patch-buildtools_wafsamba_samba__conftests.py) = d927db17124d2bb5b382885e70a41f84c3929926 6SHA1 (patch-buildtools_wafsamba_samba__conftests.py) = d927db17124d2bb5b382885e70a41f84c3929926
7SHA1 (patch-buildtools_wafsamba_samba__install.py) = d801340617da325e3bb70a90350e45cc8e383c2d 7SHA1 (patch-buildtools_wafsamba_samba__install.py) = d801340617da325e3bb70a90350e45cc8e383c2d
8SHA1 (patch-buildtools_wafsamba_samba__pidl.py) = e4c0ed3dacfcf5613a5b397b3c6cf88509497da7 8SHA1 (patch-buildtools_wafsamba_samba__pidl.py) = e4c0ed3dacfcf5613a5b397b3c6cf88509497da7
9SHA1 (patch-buildtools_wafsamba_samba__utils.py) = 0a587421870c1974175fadbb02dde215f35938f2 9SHA1 (patch-buildtools_wafsamba_samba__utils.py) = 0a587421870c1974175fadbb02dde215f35938f2
10SHA1 (patch-buildtools_wafsamba_wscript) = 0ca4c3a9d2e07f9165784e495f6f6b2b21db2758 10SHA1 (patch-buildtools_wafsamba_wscript) = 0ca4c3a9d2e07f9165784e495f6f6b2b21db2758
11SHA1 (patch-dynconfig_wscript) = 1858e5fcca913f21aa3e7868d9760b9c40c9f5c4 11SHA1 (patch-dynconfig_wscript) = 1858e5fcca913f21aa3e7868d9760b9c40c9f5c4
12SHA1 (patch-lib_param_loadparm.h) = 0216b69d33d1e17260a446e11bee764116c52b18 12SHA1 (patch-lib_param_loadparm.h) = 0216b69d33d1e17260a446e11bee764116c52b18
13SHA1 (patch-lib_pthreadpool_pthreadpool.c) = 4b0c3d49d578b5ab12f5bad1ebeb50efb43e756c 13SHA1 (patch-lib_pthreadpool_pthreadpool.c) = 4b0c3d49d578b5ab12f5bad1ebeb50efb43e756c
14SHA1 (patch-lib_replace_system_passwd.h) = 652be067b2560310ce3a4bbf37c24cb2fa8eb82d 14SHA1 (patch-lib_replace_system_passwd.h) = 652be067b2560310ce3a4bbf37c24cb2fa8eb82d
15SHA1 (patch-lib_replace_wscript) = 4250bdfd8ee82fcdb43315f24a124b7ae8d7e36f 15SHA1 (patch-lib_replace_wscript) = 4250bdfd8ee82fcdb43315f24a124b7ae8d7e36f
16SHA1 (patch-lib_tdb_common_mutex.c) = 74162bf9dfd440fc0b9782982e83776c9671a983 16SHA1 (patch-lib_tdb_common_mutex.c) = 74162bf9dfd440fc0b9782982e83776c9671a983
17SHA1 (patch-lib_tevent_tevent.c) = dc782c5b7214abf52a4c8c242018b1989bca08e3 17SHA1 (patch-lib_tevent_tevent.c) = dc782c5b7214abf52a4c8c242018b1989bca08e3
18SHA1 (patch-lib_tevent_tevent__threads.c) = e5e82db82cff4d550451cd9290b3a351b25d4de4 18SHA1 (patch-lib_tevent_tevent__threads.c) = e5e82db82cff4d550451cd9290b3a351b25d4de4