Zimbra Releases/8.8.8/P4

Revision as of 05:27, 25 May 2018 by Pajari (talk | contribs) (→‎Patch Installation)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
The printable version is no longer supported and may have rendering errors. Please update your browser bookmarks and please use the default browser print function instead.

Zimbra Collaboration 8.8.8 Patch 4 GA Release

Check out the "Security Fixes", "Fixed Issues", "Zimbra NG Changelog" and "Known Issues" for this version of Zimbra Collaboration. Please refer "Patch Installation" section for Patch Installation instructions. As always, you’re encouraged to tell us what you think in the Forums, or file a bug in Bugzilla.

Security Fixes

Information about security fixes, security response policy and vulnerability rating classification are listed below. See the Zimbra Security Response Policy and the Zimbra Vulnerability Rating Classification information below for details.

Bug# Summary CVE-ID CVSS
Score
Zimbra
Rating
Fix Release or
Patch Version
108902 Persistent XSS - contact group [CWE-79] CVE-2018-10939 3.5 Minor 8.8.8 Patch4

Software changes

Fixed Issues (Bugzilla query)

108974 Logging changes in 8.8.8 for sendMsg, createFolder, filters
108975 Cannot print email from zimbra webClient after installing 8.8.8 Patch1


Zimbra NG Changelog

Mobile NG:
  • Fixed the nested attachments view issue in Outlook
  • Fixed Remote wipe not working issue for samsung devices
HSM NG:
  • Move blobs may break blobs if compressed file size is equal to the original size
  • Wrong logs caused by an error returned by a IsS3CacheValid's request
Admin Zimlet NG:
  • Provided notification message to inform the user that the stop process has started when user performs "Stop ALL backup operation"
  • Import Wizard - account step - Fixed issue "Select and deselect all actions were not working correctly"
  • Mobile module - Fixed issue "Suspend, Resume and wipe were not working"
  • HSM Primary Volumes editing dialog doesn't save changes
  • Adding an S3 volume without name break HSM management
  • Backup, Import wizard, account search don't work as expected
Backup NG:
  • BACKUP of chat server failed when chat module is not running
  • Restore revisions from external backup breaks on metadata and won't restore item
Talk NG:
  • User can invite non-talk users into groups
  • Chat - Add "ME" in groups and spaces - earlier user could not see self as participant in the groups/spaces

Known Issues

108972 Talk Service is stopped after installing/upgrading to version 1.0.6 Workaround: Admin has to start Talk service manually, please see bug comment

Patch Installation

8.8.8 Patch Change: Please read!

**This note is applicable only if you are upgrading from 8.8.8 GA or 8.8.8 Patch1 to latest patch. Ignore, if you are upgrading from 8.8.8 Patch2 or higher version of 8.8.8 Patch.

8.8.8 Patch (zimbra-patch) checks if your system is Network Edition and if so adds a new Network Edition-only package repository. As a result, after 8.8.8 Patch installation is completed, Network edition customers will need to run another package update/upgrade process to obtain the updated Network Edition only packages available from newly added package repository.

Before Installing the Patch

Before installing the patch, consider the following:

  • Patches are cumulative.
  • A full backup should be performed before any patch is applied. There is no automated roll-back.
  • Zimlet patches can include removing existing Zimlets and redeploying the patched Zimlet.
  • Only files or Zimlets associated with installed packages will be installed from the patch.
  • Switch to user zimbra before using ZCS CLI commands.
  • Important! You cannot revert to the previous ZCS release after you upgrade to the patch.
  • Important Note for ZCS Setup with Local ZCS repository: Customers who have setup local ZCS repository should first update the local repository by following instructions in wiki

Install the Patch

Note: This patch should be installed only on all mailbox nodes running in your environment.

With 8.8.8 Patches, customers would not need to download any ZCS Patch builds. Patch packages can be installed by using Linux package management commands.

  • Please make note that, installing zimbra-patch package only updates the Zimbra core packages. administrator would need to upgrade other applicable packages like zimbra-chat, zimbra-network-modules-ng, zimbra-talk.
  • Note regarding Chat and Talk package conflict
    • zimbra-chat and zimbra-talk packages conflict each other.
    • Ubuntu will ask user's confirmation before removing already installed package and installing the conflicting package.
    • Redhat will give error if conflict found and user will have to remove installed package before installing conflicting package.


Please refer below steps for 8.8.8 Patch installation on Redhat and Ubuntu platforms:

Redhat

Installing zimbra packages individually

Install/Upgrade zimbra-patch for FOSS and NETWORK

  • As root, install the patch. Type
yum clean metadata 
yum check-update 
yum install zimbra-patch
  • Switch to user zimbra
su – zimbra
  • ZCS must be restarted to changes to take effect. Type
zmcontrol restart


Install/Upgrade zimbra-chat for FOSS and NETWORK

  • As root, Type below command.
yum install zimbra-chat 
  • Switch to user zimbra
su – zimbra
  • Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart


Install/Upgrade zimbra-talk and zimbra-network-modules-ng (NETWORK Only)

  • If you are upgrading from 8.8.8 GA or 8.8.8 Patch1, Make sure you have already installed/upgraded zimbra-patch before this step. Please see 8.8.8 Patch Change
  • As root, Type below command.
yum clean metadata 
yum check-update 
yum install zimbra-network-modules-ng
yum install zimbra-talk
  • Switch to user zimbra
su – zimbra
  • Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart


Installing zimbra packages with system package upgrades

  • As root, type below command to clear yum cache
yum clean metadata
  • As root, type below command first time so the server sees there is a new zimbra-patch package in the 888patch repository (and any other available operating system and Zimbra common package updates)
yum check-update
  • As root, type below command to allow the patch, if necessary, to add the new Network Edition patch repository.
yum install zimbra-patch 
  • As root, type below command to update most available packages.
yum update
  • Switch to user zimbra
su – zimbra
  • ZCS must be restarted to changes to take effect. Type
zmcontrol restart

Ubuntu

Installing zimbra packages individually

Install/Upgrade zimbra-patch for FOSS and NETWORK

  • As root, install the patch. Type
apt-get update
apt-get install zimbra-patch
  • Switch to user zimbra
su – zimbra
  • ZCS must be restarted to changes to take effect. Type
zmcontrol restart


Install/Upgrade zimbra-chat for FOSS and NETWORK

  • As root, Type below command.
apt-get install zimbra-chat 
  • Switch to user zimbra
su – zimbra
  • Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart


Install/Upgrade zimbra-talk and zimbra-network-modules-ng (NETWORK Only)

  • If you are upgrading from 8.8.8 GA or 8.8.8 Patch1, Make sure you already installed/upgraded zimbra-patch before this step. Please see 8.8.8 Patch Change
  • As root. Type below command.
apt-get update
apt-get install zimbra-network-modules-ng
apt-get install zimbra-talk
  • Switch to user zimbra
su – zimbra
  • Zimbra mailbox service must be restarted to changes to take effect. Type
zmmailboxdctl restart

Installing zimbra packages with system package upgrades

  • As root, type below command first time so the server sees there is a new zimbra-patch package in the 888patch repository (and any other available operating system and Zimbra common package updates)
apt-get update
  • As root, type below command to allow the patch, if necessary, to add the new Network Edition patch repository.
apt-get install zimbra-patch
  • Network Edition Only: As root, type below command second time so the server sees the packages available in the new Network Edition repository added by Patch (**Only needed if you are upgrading from 8.8.8 GA or 8.8.8 Patch1)
apt-get update
  • As root, type below command to update most available packages
apt-get upgrade

OR

  • As root, type below command to update all available packages plus any kernel updates.
apt-get dist-upgrade
  • Switch to user zimbra
su – zimbra
  • ZCS must be restarted to changes to take effect. Type
zmcontrol restart
Jump to: navigation, search