Back Linuxsecurity openSUSE Samba Important Security Update Advisory 2026-3365
Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges ×
This update for samba fixes the following issues
* CVE-2026-6949: TSIG packet with crafted name compression can crash internal
DNS server (bsc#1271672).
* CVE-2026-15779: `pam_winbind` module with `mkhomedir` set allows `chown` of
critical system paths without validation (bsc#1271469).
* CVE-2026-58216: 6-byte heap OOB read in packet parser of the `kpasswd`
service (bsc#1271674).
* CVE-2026-58218: DNS TKEY negotiation stores unauthenticated GSS contexts in
a fixed FIFO before authentication completes (bsc#1271675).
* CVE-2026-58221: authenticated LDAP access to internal LDB special DNs
permits domain takeover (bsc#1271676).
* CVE-2026-58222: LDAP Compare filter injection and trusted-request confusion
disclose protected attributes (bsc#1271677).
* CVE-2026-58224: heap OOB read due to unchecked packet length fields in CTDB
## Patch Instructions:
To install this SUSE update use the SUSE recommended installation methods like
YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
* SUSE Linux Enterprise High Availability Extension 15 SP5
zypper in -t patch SUSE-SLE-Product-HA-15-SP5-2026-3365=1
* SUSE Linux Enterprise High Performance Computing LTSS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-3365=1
* SUSE Linux Enterprise Server 15 SP5 LTSS
zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-3365=1
* SUSE Linux Enterprise Micro 5.5
zypper in -t patch SUSE-SLE-Micro-5.5-2026-3365=1
* SUSE Linux Enterprise Server for SAP Applications 15 SP5
zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-3365=1
* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5
zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-3365=1
zypper in -t patch SUSE-2026-3365=1
* openSUSE Leap 15.5 (aarch64 i586 ppc64le s390x x86_64)
* samba-debugsource-4.17.12+git.581.f49579c6cd-150500.3.42.1
* libsamba-policy-python3-devel-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-python3-4.17.12+git.581.f49579c6cd-150500.3.42.1
* ctdb-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-winbind-libs-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-winbind-libs-debuginfo-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-ldb-ldap-debuginfo-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-libs-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-client-4.17.12+git.581.f49579c6cd-150500.3.42.1
* libsamba-policy-devel-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-client-libs-debuginfo-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-dcerpc-debuginfo-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-libs-python3-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-4.17.12+git.581.f49579c6cd-150500.3.42.1
* samba-ldb-ldap-4.17.12+git.581.f49579c6cd-150500.3.42.1
*
*
*
*
*
*
*
*
*
*
*
*
*
*
Get the latest Linux and open source security news straight to your inbox.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
