Search CVE reports


Toggle filters

1 – 10 of 199 results


CVE-2026-4480

Medium priority

Some fixes available 4 of 8

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta...

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-4408

Medium priority

Some fixes available 4 of 8

Unauthenticated Remote Code Execution in Samba DCE/RPC SAMR server

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-3238

Medium priority

Some fixes available 4 of 8

Denial of service against AD DC WINS server

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-3012

Medium priority
Fixed

auto-enrolment GPO installing CA certificate over http without verification

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Not affected Not affected Not affected
Show less packages

CVE-2026-2340

Medium priority

Some fixes available 4 of 8

WORM vfs module does not block overwrites

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2026-1933

Medium priority
Fixed

Missing access checks on reparse point operations

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Not affected Not affected Not affected Not affected
Show less packages

CVE-2025-9640

Low priority
Fixed

A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read residual memory content that may include sensitive...

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-10230

Medium priority
Fixed

A flaw was found in Samba, in the front-end WINS hook handling: NetBIOS names from registration packets are passed to a shell without proper validation or escaping. Unsanitized NetBIOS name data from WINS registration packets are...

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Fixed
Show less packages

CVE-2025-0620

Medium priority
Fixed

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-25720

Medium priority
Vulnerable

A vulnerability was found in Samba where a delegated administrator with permission to create objects in Active Directory can write to all attributes of the newly created object, including security-sensitive attributes, even after...

1 affected package

samba

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Not affected Vulnerable Vulnerable Vulnerable
Show less packages