Add link to security bugs in bugzilla
[samba-web.git] / posted_news / 20201029-082916.4.13.1.body.html
1 <!-- BEGIN: posted_news/20201029-082916.4.13.1.body.html -->
2 <h5><a name="4.13.1">29 October 2020</a></h5>
3 <p class=headline>Samba 4.13.1, 4.12.9 and 4.11.15 Security Releases Available</p>
4 <p>
5 These are security releases in order to address <a href="/samba/security/CVE-2020-14318.html">CVE-2020-14318</a>
6 (Missing handle permissions check in SMB1/2/3 ChangeNotify), <a href="/samba/security/CVE-2020-14323.html">CVE-2020-14323</a>
7 (Unprivileged user can crash winbind) and <a href="/samba/security/CVE-2020-14383.html">CVE-2020-14383</a>
8 (An authenticated user can crash the DCE/RPC DNS with easily crafted records).
9 </p>
10 <p>
11 The uncompressed tarballs have been signed using GnuPG (ID
12 6F33915B6568B7EA).</br>
13 The 4.13.1 source code can be <a href="https://download.samba.org/pub/samba/stable/samba-4.13.1.tar.gz">downloaded now</a>.
14 A <a href="https://download.samba.org/pub/samba/patches/samba-4.13.0-4.13.1.diffs.gz">patch against Samba 4.13.0</a> is also available.
15 See the <a href="https://www.samba.org/samba/history/samba-4.13.1.html">4.13.1
16 release notes</a> for more info.</br>
17 The 4.12.9 source code can be <a href="https://download.samba.org/pub/samba/stable/samba-4.12.9.tar.gz">downloaded now</a>.
18 A <a href="https://download.samba.org/pub/samba/patches/samba-4.12.8-4.12.9.diffs.gz">patch against Samba 4.12.8</a> is also available.
19 See the <a href="https://www.samba.org/samba/history/samba-4.12.9.html">4.12.9 release notes</a> for more info.</br>
20 The 4.11.15 source code can be <a href="https://download.samba.org/pub/samba/stable/samba-4.11.15.tar.gz">downloaded now</a>.
21 A <a
22 href="https://download.samba.org/pub/samba/patches/samba-4.11.14-4.11.15.diffs.gz">patch against Samba 4.11.14</a> is also available.
23 See the <a href="https://www.samba.org/samba/history/samba-4.11.15.html">4.11.15 release notes</a> for more info.
24 </p>
25 <!-- END: posted_news/20201029-082916.4.13.1.body.html -->