Displaying 20 results from an estimated 10000 matches similar to: "[Announce] Samba 3.2.13 Security Release Available for Download"
2009 Jun 23
1
[Announce] Samba 3.3.6 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
   o CVE-2009-1888:
     In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
     data value can potentially affect access control when "dos filemode"
     is set to "yes".
######################################################################
Changes
2009 Jun 23
1
[Announce] Samba 3.3.6 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
   o CVE-2009-1888:
     In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
     data value can potentially affect access control when "dos filemode"
     is set to "yes".
######################################################################
Changes
2009 Jun 23
1
[Announce] Samba 3.0.35 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
   o CVE-2009-1888:
     In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
     data value can potentially affect access control when "dos filemode"
     is set to "yes".
######################################################################
Changes
2009 Jun 23
1
[Announce] Samba 3.0.35 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
   o CVE-2009-1888:
     In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
     data value can potentially affect access control when "dos filemode"
     is set to "yes".
######################################################################
Changes
2023 Jul 19
1
[Announce] Samba 4.18.5, 4.17.10., 4.16.11 Security Releases are available for Download
Release Announcements
---------------------
This are security releases in order to address the following defects:
o CVE-2022-2127:? When winbind is used for NTLM authentication, a 
maliciously
 ????????????????? crafted request can trigger an out-of-bounds read in 
winbind
 ????????????????? and possibly crash it.
https://www.samba.org/samba/security/CVE-2022-2127.html
o CVE-2023-3347:? SMB2
2023 Jul 19
1
[Announce] Samba 4.18.5, 4.17.10., 4.16.11 Security Releases are available for Download
Release Announcements
---------------------
This are security releases in order to address the following defects:
o CVE-2022-2127:? When winbind is used for NTLM authentication, a 
maliciously
 ????????????????? crafted request can trigger an out-of-bounds read in 
winbind
 ????????????????? and possibly crash it.
https://www.samba.org/samba/security/CVE-2022-2127.html
o CVE-2023-3347:? SMB2
2009 Oct 01
1
[Announce] Samba 3.3.8 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
   o CVE-2009-2813:
     In all versions of Samba later than 3.0.11, connecting to the home
     share of a user will use the root of the filesystem
     as the home directory if this user is misconfigured to have
     an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.2.15 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
   o CVE-2009-2813:
     In all versions of Samba later than 3.0.11, connecting to the home
     share of a user will use the root of the filesystem
     as the home directory if this user is misconfigured to have
     an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.0.37 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
   o CVE-2009-2813:
     In all versions of Samba later than 3.0.11, connecting to the home
     share of a user will use the root of the filesystem
     as the home directory if this user is misconfigured to have
     an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.3.8 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
   o CVE-2009-2813:
     In all versions of Samba later than 3.0.11, connecting to the home
     share of a user will use the root of the filesystem
     as the home directory if this user is misconfigured to have
     an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.2.15 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
   o CVE-2009-2813:
     In all versions of Samba later than 3.0.11, connecting to the home
     share of a user will use the root of the filesystem
     as the home directory if this user is misconfigured to have
     an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.0.37 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
   o CVE-2009-2813:
     In all versions of Samba later than 3.0.11, connecting to the home
     share of a user will use the root of the filesystem
     as the home directory if this user is misconfigured to have
     an empty home directory in /etc/passwd.
2008 Nov 27
2
[Announce] Samba 3.2.5 Available for Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Release Announcements
=====================
This is a security release in order to address CVE-2008-4314 ("Potential leak of
arbitrary memory contents").
   o CVE-2008-4314
     Samba 3.0.29 to 3.2.4 can potentially leak
     arbitrary memory contents to malicious
     clients.
The original security announcement for this and past
2008 Nov 27
2
[Announce] Samba 3.2.5 Available for Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Release Announcements
=====================
This is a security release in order to address CVE-2008-4314 ("Potential leak of
arbitrary memory contents").
   o CVE-2008-4314
     Samba 3.0.29 to 3.2.4 can potentially leak
     arbitrary memory contents to malicious
     clients.
The original security announcement for this and past
2013 Mar 19
2
[Announce] Samba 4.0.4 Security Release Available for Download
Release Announcements
---------------------
This is a security release in order to address CVE-2013-1863
(World-writeable files may be created in additional shares on a
Samba 4.0 AD DC).
o  CVE-2013-1863:
   Administrators of the Samba 4.0 Active Directory Domain
   Controller might unexpectedly find files created world-writeable
   if additional CIFS file shares are created on the AD DC.
  
2013 Mar 19
2
[Announce] Samba 4.0.4 Security Release Available for Download
Release Announcements
---------------------
This is a security release in order to address CVE-2013-1863
(World-writeable files may be created in additional shares on a
Samba 4.0 AD DC).
o  CVE-2013-1863:
   Administrators of the Samba 4.0 Active Directory Domain
   Controller might unexpectedly find files created world-writeable
   if additional CIFS file shares are created on the AD DC.
  
2007 Feb 05
2
Samba 3.0.24 Available for Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
==============================================================
                      I can say 'no' in 4 different languages.
                                             -- Jeremy Allison
==============================================================
Release Announcements
=====================
This is the latest stable release of Samba. This
2008 Nov 27
1
[Announce] Samba 3.0.33 Available for Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Release Announcements
=====================
This is a security release in order to address CVE-2008-4314 ("Potential leak of
arbitrary memory contents").
   o CVE-2008-4314
     Samba 3.0.29 to 3.2.4 can potentially leak
     arbitrary memory contents to malicious
     clients.
The original security announcement for this and past
2008 Nov 27
1
[Announce] Samba 3.0.33 Available for Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Release Announcements
=====================
This is a security release in order to address CVE-2008-4314 ("Potential leak of
arbitrary memory contents").
   o CVE-2008-4314
     Samba 3.0.29 to 3.2.4 can potentially leak
     arbitrary memory contents to malicious
     clients.
The original security announcement for this and past
2009 Jan 05
1
[ANNOUNCE] Samba 3.2.7 Available for Download
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Release Announcements
=====================
This is a security release in order to address CVE-2009-0022.
   o CVE-2009-0022
     In Samba 3.2.0 to 3.2.6, in setups with registry shares enabled,
     access to the root filesystem ("/") is granted
     when connecting to a share called "" (empty string)
     using old versions of