Release Planning for Samba 4.19

From SambaWiki

Samba 4.19 is in the Security Fixes Only Mode.

Release blocking bugs

Samba 4.19.9

(Updated 17-October-2024)

  • Thursday, October 17 2024 - Samba 4.19.9 has been released. There will be security releases only beyond this point.
 Release Notes Samba 4.19.9

Samba 4.19.8

(Updated 15-August-2024)

  • Thursday, August 15 2024 - Samba 4.19.8 has been released.
 Release Notes Samba 4.19.8

Samba 4.19.7

(Updated 10-June-2024)

  • Monday, June 10 2024 - Samba 4.19.7 has been released.
 Release Notes Samba 4.19.7

Samba 4.19.6

(Updated 8-April-2024)

  • Monday, April 8 2024 - Samba 4.19.6 has been released.
 Release Notes Samba 4.19.6

Samba 4.19.5

(Updated 19-February-2024)

  • Monday, February 19 2024 - Samba 4.19.5 has been released.
 Release Notes Samba 4.19.5

Samba 4.19.4

(Updated 08-January-2024)

  • Monday, January 8 2024 - Samba 4.19.4 has been released.
 Release Notes Samba 4.19.4

Samba 4.19.3

(Updated 27-November-2023)

  • Monday, November 27 2023 - Samba 4.19.3 has been released.
 Release Notes Samba 4.19.3

Samba 4.19.2

(Updated 16-October-2023)

  • Monday, October 16 2023 - Samba 4.19.2 has been released.
 Release Notes Samba 4.19.2

Samba 4.19.1

(Updated 10-October-2023)

  • Tuesday, October 10 2023 - Samba 4.19.1 has been released as a Security Release to address the following defects:
    • CVE-2023-3961 (Unsanitized pipe names allow SMB clients to connect as root to existing unix domain sockets on the file system.)
    • CVE-2023-4091 (SMB client can truncate files to 0 bytes by opening files with OVERWRITE disposition when using the acl_xattr Samba VFS module with the smb.conf setting "acl_xattr:ignore system acls = yes")
    • CVE-2023-4154 (An RODC and a user with the GET_CHANGES right can view all attributes, including secrets and passwords. Additionally, the access check fails open on error conditions.)
    • CVE-2023-42669 (Calls to the rpcecho server on the AD DC can request that the server block for a user-defined amount of time, denying service.)
    • CVE-2023-42670 (Samba can be made to start multiple incompatible RPC listeners, disrupting service on the AD DC.)
 Release Notes Samba 4.19.1

Samba 4.19.0

(Updated 04-September-2023)

  • Monday, September 4 2023 - Samba 4.19.0 has been released.
 Release Notes Samba 4.19.0

Samba 4.19.0rc4

(Updated 28-August-2023)

  • Monday, August 28 2023 - Samba 4.19.0rc4 has been released.
 Release Notes Samba 4.19.0rc4

Samba 4.19.0rc3

(Updated 18-August-2023)

  • Friday, August 18 2023 - Samba 4.19.0rc3 has been released.
 Release Notes Samba 4.19.0rc3

Samba 4.19.0rc2

(Updated 08-August-2023)

  • Tuesday, August 8 2023 - Samba 4.19.0rc2 has been released.
 Release Notes Samba 4.19.0rc2

Samba 4.19.0rc1

(Updated 28-July-2023)

  • Friday, July 28 2023 - Samba 4.19.0rc1 has been released.
 Release Notes Samba 4.19.0rc1