samba_CVE-2018-1057_helper on older releases

Stefan Metzmacher metze at samba.org
Tue Mar 13 19:42:22 UTC 2018


Hi Andrew,

can you please test a changed script against 4.7 and 4.6
and upload it to the bugreport.

Then I can sign it with the release key later and upload
it to the download server.

Thanks!
metze

>> Yes, that probably makes more sense.  A simple str() around the DN
>> parameter is probably the lest disruptive workaround for the older
>> versions.
> 
> Yes, a simple str() does the trick.
> 
> Would it we possible to update the script (with corresponding hash) on
> the official wiki? That way I could forward there those picky security
> officers that are wondering why I send them a different script than the
> official one.
> 
> And actually all the sites that I couldn't migrate to latest version are
> all 4.6 and below...


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: OpenPGP digital signature
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20180313/22ac4f3b/signature.sig>


More information about the samba-technical mailing list