Thursday, July 28, 2022

Re: [SECURITY UPDATE] samba-4.16.4

On Thu, Jul 28 2022, Jeremie Courreges-Anglas <jca@wxcvbn.org> wrote:
> Several fixes for the AD DC code, which AFAIK do not affect us, but also
> a memory leak for the SMBv1 file server code

That was poor wording on my side: the update addresses a "server memory
information leak", more details at:

https://www.samba.org/samba/security/CVE-2022-32742.html

> (which is disabled by
> default). While here reinstate the PLIST bits what I lost in the
> update to 4.16.X.
>
> Release notes:
> https://www.samba.org/samba/history/samba-4.16.4.html
>
> Runtime test reports and oks welcome.

[...]

--
jca | PGP : 0x1524E7EE / 5135 92C1 AD36 5293 2BDF DDCC 0DFA 74AE 1524 E7EE

No comments:

Post a Comment