From owner-cvs-all Sat Mar 15 13:48:19 2003 Delivered-To: cvs-all@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id EE33837B401; Sat, 15 Mar 2003 13:48:17 -0800 (PST) Received: from repoman.freebsd.org (repoman.freebsd.org [216.136.204.115]) by mx1.FreeBSD.org (Postfix) with ESMTP id A144543F85; Sat, 15 Mar 2003 13:48:17 -0800 (PST) (envelope-from trevor@FreeBSD.org) Received: from repoman.freebsd.org (localhost [127.0.0.1]) by repoman.freebsd.org (8.12.6/8.12.6) with ESMTP id h2FLmH0U007316; Sat, 15 Mar 2003 13:48:17 -0800 (PST) (envelope-from trevor@repoman.freebsd.org) Received: (from trevor@localhost) by repoman.freebsd.org (8.12.6/8.12.6/Submit) id h2FLmHw5007315; Sat, 15 Mar 2003 13:48:17 -0800 (PST) Message-Id: <200303152148.h2FLmHw5007315@repoman.freebsd.org> From: Trevor Johnson Date: Sat, 15 Mar 2003 13:48:17 -0800 (PST) To: ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org Subject: cvs commit: ports/net/samba Makefile distinfo X-FreeBSD-CVS-Branch: HEAD Sender: owner-cvs-all@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG trevor 2003/03/15 13:48:17 PST FreeBSD ports repository Modified files: net/samba Makefile distinfo Log: Update to 2.2.8, which was released today with this note on the Samba Web site: A flaw has been detected in the Samba main smbd code which could allow an external attacker to remotely and anonymously gain Super User (root) privileges on a server running a Samba server. This flaw exists in previous versions of Samba from 2.0.x to 2.2.7a inclusive. This is a serious problem and all sites should either upgrade to Samba 2.2.8 immediately or prohibit access to TCP ports 139 and 445. I tested this in the same environment as before. This should be fetchable too. Requested by: dwcjr (maintainer) pointy hat to: my collection Revision Changes Path 1.116 +1 -3 ports/net/samba/Makefile 1.48 +1 -2 ports/net/samba/distinfo To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe cvs-all" in the body of the message