Hi Folks, Currently i am using samba version 2.5. Now the following patches for security vulnerabilities are available on the samba.org... http://us4.samba.org/samba/ftp/patches/security/samba-3.0.24-CVE-2007-2444.patch http://us4.samba.org/samba/ftp/patches/security/samba-3.0.24-CVE-2007-2446.patch http://us4.samba.org/samba/ftp/patches/security/samba-3.0.24-CVE-2007-2447.patch But these patches are for samba 3 onwards. So if i need to apply these patches for my samba (2.5) . I have no clue how to proceed? As there are a lot of changes in code between 2.5 and 3 . So its becoming very tough for me , how to backport these patches? I have no clue also , is these security holes are valid for my samba version 2.5. If you guys have any suggestions ...please let me know... Thanks in advance........... vikash
On Tue, May 29, 2007 at 06:14:46PM +0530, Vikash Jha wrote:> I have no clue also , is these security holes are valid for my samba version > 2.5.First, there is no version 2.2.5. Second, we've put Samba 2.2 end of life two and a half years ago. Please upgrade to Samba 3. Volker -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.samba.org/archive/samba/attachments/20070529/500f49fa/attachment.bin
On Tue, May 29, 2007 at 07:11:46PM +0530, Vikash Jha wrote:> sorry my samba version is 2.5..Ok, then it is not the Samba from http://samba.org. Please contact the correct vendor where you got the software from, it's not samba.org. Volker -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.samba.org/archive/samba/attachments/20070529/9162f886/attachment.bin
Apparently Analagous Threads
- Patched 3.0.24 tree for CVE-2007-2444, CVE-2007-2446, and CVE-2007-2447
- unable to mount zfs file system..pl help
- Request for comment, logging patch
- OpenSSH 3.6.1p2 ON SCO 3.2v4.2 + STRICTMODES -->yes
- OpenSSH 3.6.1p2 +UnixWare 7.1.1 +SSH2 + PasswordAuthentication no + PermitEmptyPasswords yes (followup)