[Samba] CVE-2017-7494 patches

Rowland Penny rpenny at samba.org
Tue Jun 6 14:12:12 UTC 2017


On Tue, 6 Jun 2017 19:15:18 +0530
"Chunduru, Krishnachaithanya via samba" <samba at lists.samba.org> wrote:

> Hi All,
> 
> Can someone please confirm if Samba 3.0.28 is vulnerable to
> CVE-2017-7494. If yes, please let me know where I can get the patches
> for this.
> 

I can confirm two things here:

1) only Samba from 3.5.0 was vulnerable 
2) you really shouldn't be still using 3.0.28, the 3.0 series went EOL
8 years ago.

Rowland
 



More information about the samba mailing list