package/samba4: security bump to version 4.5.12
authorBernd Kuhls <bernd.kuhls@t-online.de>
Thu, 13 Jul 2017 20:03:48 +0000 (22:03 +0200)
committerPeter Korsgaard <peter@korsgaard.com>
Thu, 13 Jul 2017 20:52:53 +0000 (22:52 +0200)
commitf97510659f914ee51c0f32e82664179a69ab17ba
tree5f2871dbc56cd73eac8abcfa6a1b6d9b46dcfc8b
parentbc6a84bb3d05e0d752ecf59bb35ac827e9b76185
package/samba4: security bump to version 4.5.12

Fixes CVE-2017-11103:

All versions of Samba from 4.0.0 onwards using embedded Heimdal
Kerberos are vulnerable to a man-in-the-middle attack impersonating
a trusted server, who may gain elevated access to the domain by
returning malicious replication or authorization data.

Samba binaries built against MIT Kerberos are not vulnerable.

https://www.samba.org/samba/history/samba-4.5.12.html

[Peter: add CVE info]
Signed-off-by: Bernd Kuhls <bernd.kuhls@t-online.de>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/samba4/samba4.hash
package/samba4/samba4.mk