release: / 33

Github source: 7ddaaef6 or master branch

This is a security release addressing the following issues - CVE-2017-4974: Blind SQL Injection with privileged UAA endpoints (high severity)

Upload this release version to the Director:

$ bosh upload-release --sha1 ea2f5a788800af37c72ee9adf454e4019414070b

Modify deployment manifest to use this release in addition to any other used releases:

- name: uaa
  version: "33"

Finally add needed deployment jobs and specify values for required properties.

Optionally download sha1: ea2f5a788800af37c72ee9adf454e4019414070b release tarball locally:

# ...or download it directly using curl
$ curl -L -J -O

# or with wget...
$ wget --content-disposition