Date: Tue, 30 May 2017 18:55:59 +0200 From: "O. Hartmann" <ohartmann@walstatt.org> To: Dimitry Andric <dim@FreeBSD.org> Cc: freebsd-security@freebsd.org Subject: Re: Samba CVE-2017-7494 and SMB implementation of FreeBSD 10 through 12 Message-ID: <20170530185559.2b94ca1b@thor.intern.walstatt.dynvpn.de> In-Reply-To: <F875D26C-F8DA-438F-AE40-8E7B2F5CDC29@FreeBSD.org> References: <CAGYSLOcqeqyYgw3BFyoRKO5RcJkmiYFMPT7qps1j-%2BobL2x==g@mail.gmail.com> <F875D26C-F8DA-438F-AE40-8E7B2F5CDC29@FreeBSD.org>
next in thread | previous in thread | raw e-mail | index | archive | help
[-- Attachment #1 --] Am Mon, 29 May 2017 23:47:46 +0200 Dimitry Andric <dim@FreeBSD.org> schrieb: > On 29 May 2017, at 18:53, Darko Gavrilovic <d.gavrilovic@gmail.com> wrote: > > > > Hello, does anyone know or able to confirm if Samba CVE-2017-7494 > > affects Samba 3.6.25 on Freebsd 9.x? > > > > https://lists.samba.org/archive/samba-announce/2017/000406.html > > The advisory very clearly says "all versions of Samba from 3.5.0 > onwards", so yes. In addition, the 3.x series is dead, and completely > unsupported. It is probably wise to upgrade, for example to 4.6.4. > > -Dimitry > I'm just curious and to have an answere at hand for my superiors: FreeBSD has a SMB implementation we uitlise with FreeBSD 10.3 and 11.0. Is FreeBSD's implementation somehow affected by the bug revealed in SAMBA >= 3.6.25? Sorry for this "stupid" question, but I need the answere for the records ;-) Kind regards, Oliver -- O. Hartmann Ich widerspreche der Nutzung oder Übermittlung meiner Daten für Werbezwecke oder für die Markt- oder Meinungsforschung (§ 28 Abs. 4 BDSG). [-- Attachment #2 --] -----BEGIN PGP SIGNATURE----- iLUEARMKAB0WIQQZVZMzAtwC2T/86TrS528fyFhYlAUCWS2kHwAKCRDS528fyFhY lDdTAgCcUsMSl+b9fQsNDYh5yWOalegvqcQZ7/1Tq0fEF9fZAgelyN46mfedTwEb f4Uj+4+RB2tadAPcZr3ySSWpU4PoAf0XJyxBxUqNklfgonxA9p90fiCqkb5HgQcE 2+FBXq1mhBz2hCi9lXa0J+xhYq/8W4LYMR6+4lDpUpO/IY2/MI+z =t7AJ -----END PGP SIGNATURE-----
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20170530185559.2b94ca1b>
