summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorKarolin Seeger <kseeger@samba.org>2012-04-28 18:58:03 +0200
committerKarolin Seeger <kseeger@samba.org>2012-04-30 20:59:37 +0200
commit4fbba692d86a04e5f929cc72eaa510ed6ab4a5d7 (patch)
tree91e9e87ec0b2b932de8cf90be1510f82eda92736
parent209d28d08f259697b39b041fa5605b7875017c79 (diff)
downloadsamba-4fbba692d86a04e5f929cc72eaa510ed6ab4a5d7.tar.gz
WHATSNEW: Release notes 3.4.17.
Karolin (cherry picked from commit a78242b544ab1a7b486856b87824050deca661dc)
-rw-r--r--WHATSNEW.txt15
1 files changed, 11 insertions, 4 deletions
diff --git a/WHATSNEW.txt b/WHATSNEW.txt
index 41685fc9d1f..4495fb86185 100644
--- a/WHATSNEW.txt
+++ b/WHATSNEW.txt
@@ -1,19 +1,26 @@
==============================
Release Notes for Samba 3.4.17
- , 2012
+ April 30, 2012
==============================
This is a security release in order to address
-CVE- ().
+CVE-2012-2111 (Incorrect permission checks when granting/removing
+privileges can compromise file server security).
+
+o CVE-2012-2111:
+ Samba 3.4.x to 3.6.4 are affected by a
+ vulnerability that allows arbitrary users
+ to modify privileges on a file server.
-o
Changes since 3.4.16
--------------------
-o Stefan Metzmacher <metze@samba.org>
+o Jeremy Allison <jra@samba.org>
+ * Fix incorrect permission checks when granting/removing
+ privileges (CVE-2012-2111).
######################################################################