From owner-freebsd-questions@FreeBSD.ORG Fri Jun 20 08:29:22 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 8E21B106566B for ; Fri, 20 Jun 2008 08:29:22 +0000 (UTC) (envelope-from Johan@double-l.nl) Received: from smtp-vbr7.xs4all.nl (smtp-vbr7.xs4all.nl [194.109.24.27]) by mx1.freebsd.org (Postfix) with ESMTP id 286798FC28 for ; Fri, 20 Jun 2008 08:29:21 +0000 (UTC) (envelope-from Johan@double-l.nl) Received: from w2003s01.double-l.local (dpm.xs4all.nl [80.126.205.144]) by smtp-vbr7.xs4all.nl (8.13.8/8.13.8) with ESMTP id m5K8TK0i005853; Fri, 20 Jun 2008 10:29:20 +0200 (CEST) (envelope-from Johan@double-l.nl) MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: quoted-printable Content-class: urn:content-classes:message X-MimeOLE: Produced By Microsoft Exchange V6.5 Date: Fri, 20 Jun 2008 10:29:20 +0200 Message-ID: <57200BF94E69E54880C9BB1AF714BBCB5DDF1F@w2003s01.double-l.local> X-MS-Has-Attach: X-MS-TNEF-Correlator: Thread-Topic: SAMBA 3.0.28a and CVE-2008-1105 Thread-Index: AcjSroTFWuLghUF9TxWh6yJaVpBS5wAAL4mA References: <485A5939.1090108@zedat.fu-berlin.de><20080620075113.A44833@gwdu60.gwdg.de> <485B674B.9010404@zedat.fu-berlin.de> From: "Johan Hendriks" To: "O. Hartmann" X-Virus-Scanned: by XS4ALL Virus Scanner Cc: freebsd-questions@freebsd.org Subject: RE: SAMBA 3.0.28a and CVE-2008-1105 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 20 Jun 2008 08:29:22 -0000 >>Konrad Heuer wrote: >>=20 >> On Thu, 19 Jun 2008, O. Hartmann wrote: >>=20 >>> We still have Samba R3.0.28a in the ports but regarding to=20 >>> CVE-2008-1105 shouldn't it be R3.0.30? >>=20 >> As far as I know the mentioned security patch gets applied when building=20 >> Samba from ports. >>=20 >> Best regards >>=20 >> Konrad Heuer >> GWDG, Am Fassberg, 37077 Goettingen, Germany, kheuer2@gwdg.de >>=20 >Oh, is that so ... then why isn't the version number bumped up? Slightly=20 >confusing, but if the patch has been incorporated it makes me feel better. >Kindly regards, >Oliver Reding this on freshports makes me think it is bumped! 29 May 2008 11:47:46 3.0.28a_1,1 =09 This is a security update of Samba 3.0.28a, that address CVE-2008-1105. Approved by: shaun (mentor, implicit) Security: CVE-2008-1105 Regards, Johan Hendriks Double L Automatisering