[Announce] Samba 3.3.6 Security Release Available for Download

View: New views
1 Messages — Rating Filter:   Alert me  

[Announce] Samba 3.3.6 Security Release Available for Download

by Karolin Seeger-2 :: Rate this Message:

Reply to Author | View Threaded | Show Only this Message

Release Announcements
=====================

This is a security release in order to address CVE-2009-1888.

   o CVE-2009-1888:
     In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
     data value can potentially affect access control when "dos filemode"
     is set to "yes".


######################################################################
Changes
#######


Changes since 3.3.5:
--------------------


o   Jeremy Allison <jra@...>
    * BUG 6488: Fix for CVE-2009-1888.


================
Download Details
================

The uncompressed tarballs and patch files have been signed
using GnuPG (ID 6568B7EA).  The source code can be downloaded
from:

        http://download.samba.org/samba/ftp/

The release notes are available online at:

        http://www.samba.org/samba/ftp/history/samba-3.3.6.html

Binary packages will be made available on a volunteer basis from

        http://download.samba.org/samba/ftp/Binary_Packages/

Our Code, Our Bugs, Our Responsibility.
(https://bugzilla.samba.org/)

                        --Enjoy
                        The Samba Team





attachment0 (204 bytes) Download Attachment