Zimbra Patches: 9.0.0 Patch 18 + 8.8.15 Patch 25

Zimbra Patch Alert

Hello Zimbra Friends, Customers & Partners,

Zimbra 9.0.0 “Kepler” Patch 18 and 8.8.15 “James Prescott Joule” Patch 25 are here.

Security Recommendation

Zimbra strongly recommends that you review whether the Proxy Servlet is configured to allow a particular host (via zimbraProxyAllowedDomains configuration setting on each class of service). Please make sure:

  • Each entry in zimbraProxyAllowedDomains is a safe and trusted host.
  • There are NO wild card entries like *.webex.com. Instead use specific hosts like example.webex.com.

What’s New:

– Nginx Upgrade from 1.19.0 to 1.20.0
– Openldap Upgrade from 2.4.49 to 2.4.59
– Postfix Upgrade from 3.5.6 to 3.6.1

Zimbra 9.0.0 “Kepler” Patch 18

Patch 18 is here for the Zimbra 9.0.0 “Kepler” GA release, and it includes What’s New, Fixed Issues and Known Issues as listed in the release notes. Please refer to the release notes for Zimbra 9.0.0 Patch 18 installation on Red Hat and Ubuntu platforms.

Zimbra 8.8.15 “James Prescott Joule” Patch 25

Patch 25 is here for the Zimbra 8.8.15 “James Prescott Joule” GA release, and it includes What’s New, Fixed Issues and Known Issues as listed in the release notes. Please refer to the release notes for Zimbra 8.8.15 Patch 25 installation on Red Hat and Ubuntu platforms.

Note: For Zimbra 8.8.8 and above, you don’t need to download any patch builds. The patch packages can be installed using Linux package management commands.

Note: You cannot revert to the previous ZCS release after you upgrade to the patch.

Take care and thanks,
Your Zimbra Team

Comments are closed.

Copyright © 2022 Zimbra, Inc. All rights reserved.

All information contained in this blog is intended for informational purposes only. Synacor, Inc. is not responsible or liable in any manner for the use or misuse of any technical content provided herein. No specific or implied warranty is provided in association with the information or application of the information provided herein, including, but not limited to, use, misuse or distribution of such information by any user. The user assumes any and all risk pertaining to the use or distribution in any form of any subject matter contained in this blog.

Legal Information | Privacy Policy | Do Not Sell My Personal Information | CCPA Disclosures