1
1
=============================
2
Release Notes for Samba 3.4.7
4
=============================
7
This is a security release in order to address CVE-2010-0728.
11
In Samba releases 3.5.0, 3.4.6 and 3.3.11, new code
12
was added to fix a problem with Linux asynchronous IO handling.
13
This code introduced a bad security flaw on Linux platforms if the
14
binaries were built on Linux platforms with libcap support.
15
The flaw caused all smbd processes to inherit CAP_DAC_OVERRIDE
16
capabilities, allowing all file system access to be allowed
17
even when permissions should have denied access.
24
o Jeremy Allison <jra@samba.org>
25
* BUG 7222: Fix for CVE-2010-0728.
28
######################################################################
29
Reporting bugs & Development Discussion
30
#######################################
32
Please discuss this release on the samba-technical mailing list or by
33
joining the #samba-technical IRC channel on irc.freenode.net.
35
If you do report problems then please try to send high quality
36
feedback. If you don't provide vital information to help us track down
37
the problem then you will probably be ignored. All bug reports should
38
be filed under the Samba 3.4 product in the project's Bugzilla
39
database (https://bugzilla.samba.org/).
42
======================================================================
43
== Our Code, Our Bugs, Our Responsibility.
45
======================================================================
48
Release notes for older versions follow:
49
----------------------------------------
51
=============================
2
52
Release Notes for Samba 3.4.6
4
54
=============================
109
159
======================================================================
112
Release notes for older versions follow:
113
----------------------------------------
162
----------------------------------------------------------------------
115
165
=============================
116
166
Release Notes for Samba 3.4.5