[19:50] <mdeslaur> there is a samba update for bionic in the security team PPA here: https://launchpad.net/~ubuntu-security-proposed/+archive/ubuntu/ppa/+packages
[19:50] <mdeslaur> if anyone is running samba as a AD-DC, I'd appreciate any testing
[22:30] <amurray> mdeslaur: wow, you ended up doing the backport of the patches rather than trying to bring 4.13.14 back to bionic 💪💪💪
[22:30] <mdeslaur> amurray: upstream backported a subset of the patches, and pointed out some other important ones
[22:31] <mdeslaur> so we'll have fixes for the most important cves, but not all of them
[22:31] <mdeslaur> AD-DCs with delegated admins will still have vulnerabilities
[22:32] <sarnold> how many times does it take to type 'ad-dc' correctly? ac-dc is just so much easier..
[22:33] <mdeslaur> for those about to update samba, we salute you
[22:54] <amurray> hmm I wonder if we should still think about backporting 4.13.14 as I fear we will have to do something like that eventually to reduce the burden of patch backporting in the future
[23:34] <mdeslaur> maybe...I kept the work I did for 4.13.14...but just going from 4.11.6 to 4.13.14 in focal has broken people so I'm not too keen on going from 4.7.6 to 4.13.14...
[23:35] <mdeslaur> we have a couple of bug reports in launchpad that have been reported upstream also
[23:37] <mdeslaur> there's also a third regression, which I'm waiting for 4.13.15 to release