-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 30 Nov 2025 11:35:04 +0300 Source: samba Architecture: source Version: 2:4.17.12+dfsg-0+deb12u3 Distribution: bookworm Urgency: medium Maintainer: Debian Samba Maintainers Changed-By: Michael Tokarev Closes: 1034803 Changes: samba (2:4.17.12+dfsg-0+deb12u3) bookworm; urgency=medium . * CVE-2018-14628: Unprivileged read of deleted object tombstones in AD LDAP server. Closes: #1034803 * CVE-2025-10230: Command injection via WINS server hook script * CVE-2025-9640: Uninitialized memory disclosure via vfs_streams_xattr Checksums-Sha1: be080a0dc5aba4f4920c73bac83e5a92362b7d7a 4889 samba_4.17.12+dfsg-0+deb12u3.dsc 47c746f9ac360fa9c453f9f31140a5d459cf567f 287764 samba_4.17.12+dfsg-0+deb12u3.debian.tar.xz a1b43dd8dbb56747ccc28d344f63db121b169c47 5663 samba_4.17.12+dfsg-0+deb12u3_source.buildinfo Checksums-Sha256: 08423ee2db13ca3c7146618957d706fa72ed318e1650e6743d309e98677214d8 4889 samba_4.17.12+dfsg-0+deb12u3.dsc eb07955b6ff597f822cf49e1e3af8bc1aad12a8980fa71e40369a8a4214f1cb6 287764 samba_4.17.12+dfsg-0+deb12u3.debian.tar.xz 6ee9a6d58bccc52eccddf8454d658d339ef3d3bb5aa6d5809874a530708e2382 5663 samba_4.17.12+dfsg-0+deb12u3_source.buildinfo Files: 2b44366a4c3f9cefd189546a126df6a1 4889 net optional samba_4.17.12+dfsg-0+deb12u3.dsc c3cf5a18727bbb1172124a3c65bb2787 287764 net optional samba_4.17.12+dfsg-0+deb12u3.debian.tar.xz bdadd51fd824955a1846aa078cd8bbea 5663 net optional samba_4.17.12+dfsg-0+deb12u3_source.buildinfo -----BEGIN PGP SIGNATURE----- wsG7BAEBCgBvBYJpLY9kCRCCqkokOx6UeEcUAAAAAAAeACBzYWx0QG5vdGF0aW9u cy5zZXF1b2lhLXBncC5vcme4HfLwfLVrjjXwUpi8rU/gueOTvdSfQCWWoIDuTqn4 hRYhBGSqKrUx1WkDNmv++YKqSiQ7HpR4AABt3RAAr0DRCkYnREwzASEx7jBfGs2s jo4TYX7mVBg9qnYiswCnBmB7X4Exa2/24ewGVh+6Zyl1GhK1KTTHMWZOChFIG8hU Yp5hDOwOrTRZ6CFxx/JfCfhfNkkRPdjIonszZUMyQMl7LFScXBvtXI8Ol9zYYNxV BxjZ5idyHXqjojcn2KTW3UcUcp87wCCggyauv8DNyhgb9/Rg1tlLlC6aCImEm3JM rtoqObnBIKqVRpS5/5EcCwJe0QkonPc6lWbMU1SF8kahoLu8C8HdHZgVcTQkx4UJ 8YfGnU7GykRo+hcX46VfB3YWrdirS0xuAC6ipjiMxyOWGYDM1cB02xcAsY5c0k/U 2tTmwxAOvpgCbLyKGZmLqHWXcV4wxWfym6X7M2vF+GXS9DkdqKyK5nIQfddTarrc XKU+8vjLvWf7NLkh0sjmfwmzSaCrrVN2cQiY8UO7tWi01ycreDA7bQmF9f7AwdbR kaPt3zMdtXSriZ11CVDKFLaQJ5WZW4oSFeFj1vULnNg/tvSAuc7CbKrljo30/oNE c/+gzoQz2cO6vkzwmKyq9mLeUUZxf7P+ZZym3gj34pG6cGJlR50WNDgdBwfAAP/k 0ZzZLzsZWdYqBKHZQXU8w4s7bCkNFfXfeay1OcNc7PCmEsuMJNyh4sX8XeDawjAU LA/g5YYH/0ARHpEpHQk= =f0fD -----END PGP SIGNATURE-----