Re: [SECURITY] samba-4.3.8 for 5.9

2016-04-17 Thread Jeremie Courreges-Anglas
Stuart Henderson writes: > On 2016/04/17 15:27, Jeremie Courreges-Anglas wrote: >> >> Note that 5.9 is still using samba-4.1.22, affected by: > > It's not what we would normally do for -stable, but I don't think we > really have another choice. OK sthen. Thanks,

Re: [SECURITY] samba-4.3.8 for 5.9

2016-04-17 Thread Stuart Henderson
On 2016/04/17 15:27, Jeremie Courreges-Anglas wrote: > > Note that 5.9 is still using samba-4.1.22, affected by: It's not what we would normally do for -stable, but I don't think we really have another choice. OK sthen.

Re: [SECURITY] samba-4.3.8 for 5.9

2016-04-17 Thread Jeremie Courreges-Anglas
Note that 5.9 is still using samba-4.1.22, affected by: Fixed in 4.1.23+: CVE-2015-7560 (Incorrect ACL get/set allowed on symlink path) CVE-2016-0771 (Out-of-bounds read in internal DNS server) Fixed in 4.2.11, 4.3.8 and 4.4.2: CVE-2015-5370 (Multiple errors in DCE-RPC code) CVE-2016-2110 (Man