View previous topic :: View next topic |
Author |
Message |
John R. Graham Administrator
![Administrator Administrator](/images/ranks/rank-admin.gif)
![](images/avatars/1323583785534df64897db0.jpg)
Joined: 08 Mar 2005 Posts: 10733 Location: Somewhere over Atlanta, Georgia
|
Posted: Thu May 25, 2017 2:47 am Post subject: Warning: CVE-2017-7494: Critical Samba Vulnerability |
|
|
If you use Samba, see https://www.samba.org/samba/security/CVE-2017-7494.html
Testing branch samba-4.5.10 has been patched to address this vulnerability but as of this writing has not been stabilized.
Workaround: Add Code: | nt pipe support = no | to the [global] section of your /etc/samba/smb.conf file and restart the samba service.
This message will be replaced with the GLSA when it's ready. Gentoo Bugzilla tracker is here. _________________ I can confirm that I have received between 0 and 499 National Security Letters. |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
John R. Graham Administrator
![Administrator Administrator](/images/ranks/rank-admin.gif)
![](images/avatars/1323583785534df64897db0.jpg)
Joined: 08 Mar 2005 Posts: 10733 Location: Somewhere over Atlanta, Georgia
|
Posted: Thu Jun 01, 2017 11:15 pm Post subject: |
|
|
samba-4.5.10 has been stabilized on all arches except arm. With that exception, all samba users should upgrade now: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=net-fs/samba-4.5.10 | - John _________________ I can confirm that I have received between 0 and 499 National Security Letters. |
|
Back to top |
|
![](templates/gentoo/images/spacer.gif) |
|