From: Raspbian automatic forward porter Date: Mon, 7 Sep 2026 21:45:47 +0000 (+0100) Subject: Merge version 2:4.24.4+dfsg-1+rpi1 and 2:4.24.6+dfsg-1 to produce 2:4.24.6+dfsg-1... X-Git-Tag: archive/raspbian/2%4.24.6+dfsg-1+rpi1^0 X-Git-Url: https://dgit.raspbian.org/%22http://www.example.com/cgi/success//%22http:/www.example.com/cgi/success/?a=commitdiff_plain;h=755b195ab094d87c60ed7c0e0367ebe9cf10c450;p=samba.git Merge version 2:4.24.4+dfsg-1+rpi1 and 2:4.24.6+dfsg-1 to produce 2:4.24.6+dfsg-1+rpi1 --- 755b195ab094d87c60ed7c0e0367ebe9cf10c450 diff --cc debian/changelog index 90e83972,3592af77..4612331c --- a/debian/changelog +++ b/debian/changelog @@@ -1,9 -1,56 +1,63 @@@ - samba (2:4.24.4+dfsg-1+rpi1) forky-staging; urgency=medium ++samba (2:4.24.6+dfsg-1+rpi1) forky-staging; urgency=medium + + [changes brought forward from 2:4.19.1+dfsg-4+rpi1 by Peter Michael Green at Thu, 12 Oct 2023 15:37:21 +0000] + * Link with libatomic on armhf too. + - -- Raspbian forward porter Tue, 21 Jul 2026 16:18:14 +0000 ++ -- Raspbian forward porter Mon, 07 Sep 2026 21:45:47 +0000 ++ + samba (2:4.24.6+dfsg-1) unstable; urgency=medium + + * debian/upstream/signing-key.asc: update + * new upstream stable.bugfix release: + - https://bugzilla.samba.org/show_bug.cgi?id=15978: + leases torture test flappy (marked flappy) + - https://bugzilla.samba.org/show_bug.cgi?id=15994: + CTDB doesn't send tickle ACKs when taking over a released IP + - https://bugzilla.samba.org/show_bug.cgi?id=16065: + Memory leak in DRS when replication fails + - https://bugzilla.samba.org/show_bug.cgi?id=16077: + witness test flappy needs to be fixed + - https://bugzilla.samba.org/show_bug.cgi?id=16093: + temporary read of unrelated or non-existing memory in s3 dfs server + - https://bugzilla.samba.org/show_bug.cgi?id=16094: + source4/dsdb/samdb/cracknames.c doesn't use ldb_binary_encode_string() + consistently + - https://bugzilla.samba.org/show_bug.cgi?id=16152: + CTDB can run nested elections, in rare circumstances + - https://bugzilla.samba.org/show_bug.cgi?id=16153: + dsgetdcname() may not detect an active directory domain if the + netbios domain name is given and nmbd nor the nbt service is available + - https://bugzilla.samba.org/show_bug.cgi?id=16176: + vfs_ceph_snapshots: smbd panics on snapshot access for a share + mounted at the CephFS root ("/") + - https://bugzilla.samba.org/show_bug.cgi?id=16186: + vfs_ceph_new: smbd crashes when mixing proxy and non-proxy CephFS shares + - https://bugzilla.samba.org/show_bug.cgi?id=16191: + race condition in pthreadpool when forking + - https://bugzilla.samba.org/show_bug.cgi?id=16199: + ndr_{push,pull,print}_{timeval,timespec} encode/decode the value twice + * d/samba-libs.symbols: add new ndr symbols + + -- Michael Tokarev Thu, 13 Aug 2026 19:14:56 +0300 + + samba (2:4.24.5+dfsg-1) unstable; urgency=medium + + * new upstream Jul-2026 secrity release, fixing the following issues: + CVE-2026-6949: TSIG packet with name compression can crash DNS + https://www.samba.org/samba/security/CVE-2026-6949.html + CVE-2026-58216: An authenticated user could possibly crash a KDC process + https://www.samba.org/samba/security/CVE-2026-58216.html + CVE-2026-58218: DNS signing DoS via TKEY name cache exhaustion + https://www.samba.org/samba/security/CVE-2026-58218.html + CVE-2026-58221: Samba AD authenticated LDAP access domain takeover + https://www.samba.org/samba/security/CVE-2026-58221.html + CVE-2026-58222: Samba AD LDAP Compare filter injection and + trusted-request confusion disclose protected attributes + https://www.samba.org/samba/security/CVE-2026-58222.html + CVE-2026-58224: The CTDB protocol has bounds checking issues + https://www.samba.org/samba/security/CVE-2026-58224.html + + -- Michael Tokarev Tue, 28 Jul 2026 14:09:41 +0300 samba (2:4.24.4+dfsg-1) unstable; urgency=medium