NEWS[4.18.3]: Samba 4.18.3 Available for Download
[samba-web.git] / history / samba-4.12.13.html
1 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
2  "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
3 <html xmlns="http://www.w3.org/1999/xhtml">
4 <head>
5 <title>Samba 4.12.13 - Release Notes</title>
6 </head>
7 <body>
8 <H2>Samba 4.12.13 Available for Download</H2>
9 <p>
10 <a href="https://download.samba.org/pub/samba/stable/samba-4.12.13.tar.gz">Samba 4.12.13 (gzipped)</a><br>
11 <a href="https://download.samba.org/pub/samba/stable/samba-4.12.13.tar.asc">Signature</a>
12 </p>
13 <p>
14 <a href="https://download.samba.org/pub/samba/patches/samba-4.12.12-4.12.13.diffs.gz">Patch (gzipped) against Samba 4.12.12</a><br>
15 <a href="https://download.samba.org/pub/samba/patches/samba-4.12.12-4.12.13.diffs.asc">Signature</a>
16 </p>
17 <p>
18 <pre>
19                    ===============================
20                    Release Notes for Samba 4.12.13
21                            March 24, 2021
22                    ===============================
23
24
25 This is a security release in order to address the following defects:
26
27 o CVE-2020-27840: Heap corruption via crafted DN strings.
28 o CVE-2021-20277: Out of bounds read in AD DC LDAP server.
29
30
31 =======
32 Details
33 =======
34
35 o  CVE-2020-27840:
36    An anonymous attacker can crash the Samba AD DC LDAP server by sending easily
37    crafted DNs as part of a bind request. More serious heap corruption is likely
38    also possible.
39
40 o  CVE-2021-20277:
41    User-controlled LDAP filter strings against the AD DC LDAP server may crash
42    the LDAP server.
43
44 For more details, please refer to the security advisories.
45
46
47 Changes since 4.12.12
48 ---------------------
49
50 o  Andrew Bartlett &lt;abartlet@samba.org&gt;
51    * BUG 14655: CVE-2021-20277: Fix out of bounds read in ldb_handler_fold.
52
53 o  Douglas Bagnall &lt;douglas.bagnall@catalyst.net.nz&gt;
54    * BUG 14595: CVE-2020-27840: Fix unauthenticated remote heap corruption via
55      bad DNs.
56    * BUG 14655: CVE-2021-20277: Fix out of bounds read in ldb_handler_fold.
57
58
59 </pre>
60 </p>
61 </body>
62 </html>