Security release for CVE-2026-3012 CVE-2026-4480 CVE-2026-4408

- resolves: RHEL-156322 - CVE-2026-3012: Group policy certificate without validation
- resolves: RHEL-161647 - CVE-2026-4480: Remote Code Execution in Samba printing subsystem
- resolves: RHEL-177933 - CVE-2026-4408: Remote Code Execution in SAMR
- resolves: RHEL-166866 - Build hardening, stack protection with FORTIFY_SOURCE

Reviewed-by: Andreas Schneider <anschnei@redhat.com>
This commit is contained in:
Pavel Filipenský 2026-04-08 09:15:24 +02:00
parent 9e97c658da
commit 68752e5df2
2 changed files with 4240 additions and 203 deletions

File diff suppressed because it is too large Load Diff

View File

@ -147,7 +147,7 @@
%define samba_requires_eq() %(LC_ALL="C" echo '%*' | xargs -r rpm -q --qf 'Requires: %%{name} = %%{epoch}:%%{version}\\n' | sed -e 's/ (none):/ /' -e 's/ 0:/ /' | grep -v "is not")
%global samba_version 4.19.4
%global baserelease 15
%global baserelease 16
# This should be rc1 or %%nil
%global pre_release %nil
@ -4479,6 +4479,12 @@ fi
%endif
%changelog
* Wed May 20 2026 Pavel Filipenský <pfilipen@redhat.com> - 4.19.4-16
- resolves: RHEL-156322 - Fix CVE-2026-3012
- resolves: RHEL-161647 - Fix CVE-2026-4480
- resolves: RHEL-177933 - Fix CVE-2026-4408
- resolves: RHEL-166866 - Build hardening, stack protection with FORTIFY_SOURCE
* Tue Jan 27 2026 Pavel Filipenský <pfilipen@redhat.com> - 4.19.4-15
- resolves: RHEL-132396 - Fix deadlock between two smbd processes