SambaCRY on FreeNAS

Status
Not open for further replies.

John Doe

Guru
Joined
Aug 16, 2011
Messages
635

Pentaflake

Explorer
Joined
Jul 8, 2014
Messages
91
@dlavigne is there any hope for a small patch to Corral to update its version of Samba. Some of us may not quite be ready or have the time currently to migrate everything back to FreeNAS 9.x yet.
 

romracer

Cadet
Joined
Aug 5, 2016
Messages
7
Yup,which is why you want to update to 9.10.2-U4.

Pardon me, but doesn't FreeNAS 9.10.2-U4 include Samba 4.5.9? That's what the email update I get says.

Samba 4.5.9 is vulnerable to SambaCry. Samba 4.5.10 is not.
 
D

dlavigne

Guest
The version number was incorrect in the subject of the bug ticket and that was what was populated to the Changelog.
 

pjc

Contributor
Joined
Aug 26, 2014
Messages
187
Note the workaround mentioned by the Samba team in their security bulletin:

==========
Workaround
==========

Add the parameter:

nt pipe support = no

to the [global] section of your smb.conf and restart smbd. This
prevents clients from accessing any named pipe endpoints. Note this
can disable some expected functionality for Windows clients.


If you can't update, that should protect you from this particular issue.
 
Status
Not open for further replies.
Top