CVE2019-9670 problem - reinstall question

Discuss your pilot or production implementation with other Zimbra admins or our engineers.
Post Reply
bkowalski72
Posts: 2
Joined: Tue Feb 07, 2017 11:27 am

CVE2019-9670 problem - reinstall question

Post by bkowalski72 »

Hello,
Release 8.7.11.GA.1854.UBUNTU12.64 UBUNTU12_64 FOSS edition, Patch 8.7.11_P11
We were hit by CVE2019-9670 exploit.

I'm considering to reinstall zimbra server.

My question is, how can I keep mailboxes intact? Is removing Zimbra collaboration and installing it again will solve the problem and if this operation removes mailboxes?

Thanks in advance for any help.

Bartosz Kowalski
7224jobe
Outstanding Member
Outstanding Member
Posts: 284
Joined: Sat Sep 13, 2014 1:55 am
ZCS/ZD Version: 8.8.15_FOSS Patch38

Re: CVE2019-9670 problem - reinstall question

Post by 7224jobe »

phoenix
Ambassador
Ambassador
Posts: 27278
Joined: Fri Sep 12, 2014 9:56 pm
Location: Liverpool, England

Re: CVE2019-9670 problem - reinstall question

Post by phoenix »

It depends on whether you can run-up a new server, can you? If you can do that then the easiest thing to do is install the most recent ZCS release on a new server then use the ZeXtras Migration Tool to move your server to the new on, that copies all the config and user + mail, it's by far the easiest thing to do. If you can't do that a quick look at the disaster recovery wiki article might be what you might consider.
Regards

Bill

Rspamd: A high performance spamassassin replacement

Per ardua ad astra
Post Reply