Zimbra Releases/8.8.8/P4
Zimbra Collaboration 8.8.8 Patch 4 GA Release
Check out the "Security Fixes", "Fixed Issues", "Zimbra NG Changelog" and "Known Issues" for this version of Zimbra Collaboration. Please refer "Patch Installation" section for Patch Installation instructions. As always, you’re encouraged to tell us what you think in the Forums, or file a bug in Bugzilla.
Security Fixes
Information about security fixes, security response policy and vulnerability rating classification are listed below. See the Zimbra Security Response Policy and the Zimbra Vulnerability Rating Classification information below for details.
Bug# | Summary | CVE-ID | CVSS Score |
Zimbra Rating |
Fix Release or Patch Version |
---|---|---|---|---|---|
108902 | Persistent XSS - contact group [CWE-79] | CVE-2018-10939 | 3.5 | Minor | 8.8.8 Patch4 |
Software changes
|
|
---|---|
108974 | Logging changes in 8.8.8 for sendMsg, createFolder, filters |
108975 | Cannot print email from zimbra webClient after installing 8.8.8 Patch1 |
|
|
---|---|
Mobile NG:
| |
HSM NG:
| |
Admin Zimlet NG:
| |
Backup NG:
| |
Talk NG:
|
|
|
---|---|
108972 | Talk Service is stopped after installing/upgrading to version 1.0.6 Workaround: Admin has to start Talk service manually, please see bug comment |
Patch Installation
**This note is applicable only if you are upgrading from 8.8.8 GA or 8.8.8 Patch1 to latest patch. Ignore, if you are upgrading from 8.8.8 Patch2 or higher version of 8.8.8 Patch.
Before Installing the Patch
Before installing the patch, consider the following:
- Patches are cumulative.
- A full backup should be performed before any patch is applied. There is no automated roll-back.
- Zimlet patches can include removing existing Zimlets and redeploying the patched Zimlet.
- Only files or Zimlets associated with installed packages will be installed from the patch.
- Switch to user zimbra before using ZCS CLI commands.
- Important! You cannot revert to the previous ZCS release after you upgrade to the patch.
- Important Note for ZCS Setup with Local ZCS repository: Customers who have setup local ZCS repository should first update the local repository by following instructions in wiki
Install the Patch
Note: This patch should be installed only on all mailbox nodes running in your environment.
With 8.8.8 Patches, customers would not need to download any ZCS Patch builds. Patch packages can be installed by using Linux package management commands.
- Please make note that, installing zimbra-patch package only updates the Zimbra core packages. administrator would need to upgrade other applicable packages like zimbra-chat, zimbra-network-modules-ng, zimbra-talk.
- Note regarding Chat and Talk package conflict
- zimbra-chat and zimbra-talk packages conflict each other.
- Ubuntu will ask user's confirmation before removing already installed package and installing the conflicting package.
- Redhat will give error if conflict found and user will have to remove installed package before installing conflicting package.
Please refer below steps for 8.8.8 Patch installation on Redhat and Ubuntu platforms:
Redhat
Installing zimbra packages individually
Install/Upgrade zimbra-patch for FOSS and NETWORK
- As root, install the patch. Type
yum clean metadata yum check-update yum install zimbra-patch
- Switch to user zimbra
su – zimbra
- ZCS must be restarted to changes to take effect. Type
zmcontrol restart
Install/Upgrade zimbra-chat for FOSS and NETWORK
- As root, Type below command.
yum install zimbra-chat
- Switch to user zimbra
su – zimbra
- Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart
Install/Upgrade zimbra-talk and zimbra-network-modules-ng (NETWORK Only)
- If you are upgrading from 8.8.8 GA or 8.8.8 Patch1, Make sure you have already installed/upgraded zimbra-patch before this step. Please see 8.8.8 Patch Change
- As root, Type below command.
yum clean metadata yum check-update yum install zimbra-network-modules-ng yum install zimbra-talk
- Switch to user zimbra
su – zimbra
- Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart
Installing zimbra packages with system package upgrades
- As root, type below command to clear yum cache
yum clean metadata
- As root, type below command first time so the server sees there is a new zimbra-patch package in the 888patch repository (and any other available operating system and Zimbra common package updates)
yum check-update
- As root, type below command to allow the patch, if necessary, to add the new Network Edition patch repository.
yum install zimbra-patch
- As root, type below command to update most available packages.
yum update
- Switch to user zimbra
su – zimbra
- ZCS must be restarted to changes to take effect. Type
zmcontrol restart
Ubuntu
Installing zimbra packages individually
Install/Upgrade zimbra-patch for FOSS and NETWORK
- As root, install the patch. Type
apt-get update apt-get install zimbra-patch
- Switch to user zimbra
su – zimbra
- ZCS must be restarted to changes to take effect. Type
zmcontrol restart
Install/Upgrade zimbra-chat for FOSS and NETWORK
- As root, Type below command.
apt-get install zimbra-chat
- Switch to user zimbra
su – zimbra
- Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart
Install/Upgrade zimbra-talk and zimbra-network-modules-ng (NETWORK Only)
- If you are upgrading from 8.8.8 GA or 8.8.8 Patch1, Make sure you already installed/upgraded zimbra-patch before this step. Please see 8.8.8 Patch Change
- As root. Type below command.
apt-get update apt-get install zimbra-network-modules-ng apt-get install zimbra-talk
- Switch to user zimbra
su – zimbra
- Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart
Installing zimbra packages with system package upgrades
- As root, type below command first time so the server sees there is a new zimbra-patch package in the 888patch repository (and any other available operating system and Zimbra common package updates)
apt-get update
- As root, type below command to allow the patch, if necessary, to add the new Network Edition patch repository.
apt-get install zimbra-patch
- Network Edition Only: As root, type below command second time so the server sees the packages available in the new Network Edition repository added by Patch (**Only needed if you are upgrading from 8.8.8 GA or 8.8.8 Patch1)
apt-get update
- As root, type below command to update most available packages
apt-get upgrade
OR
- As root, type below command to update all available packages plus any kernel updates.
apt-get dist-upgrade
- Switch to user zimbra
su – zimbra
- ZCS must be restarted to changes to take effect. Type
zmcontrol restart