Skip to content
openSUSE Samba Important Vulnerabilities Patch 2026-3362

openSUSE Samba Important Vulnerabilities Patch 2026-3362

Linuxsecurity LinuxSecurity Advisories July 29, 2026

Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges ×

This update for samba fixes the following issues

* CVE-2026-6949: TSIG packet with crafted name compression can crash internal

DNS server (bsc#1271672).

* CVE-2026-15779: `pam_winbind` module with `mkhomedir` set allows `chown` of

critical system paths without validation (bsc#1271469).

* CVE-2026-58216: 6-byte heap OOB read in packet parser of the `kpasswd`

service (bsc#1271674).

* CVE-2026-58218: DNS TKEY negotiation stores unauthenticated GSS contexts in

a fixed FIFO before authentication completes (bsc#1271675).

* CVE-2026-58221: authenticated LDAP access to internal LDB special DNs

permits domain takeover (bsc#1271676).

* CVE-2026-58222: LDAP Compare filter injection and trusted-request confusion

disclose protected attributes (bsc#1271677).

* CVE-2026-58224: heap OOB read due to unchecked packet length fields in CTDB

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* SUSE Linux Enterprise High Availability Extension 15 SP4

zypper in -t patch SUSE-SLE-Product-HA-15-SP4-2026-3362=1

* SUSE Linux Enterprise Micro for Rancher 5.3

zypper in -t patch SUSE-SLE-Micro-5.3-2026-3362=1

* SUSE Linux Enterprise Micro 5.3

zypper in -t patch SUSE-SLE-Micro-5.3-2026-3362=1

zypper in -t patch SUSE-2026-3362=1

* SUSE Linux Enterprise Server 15 SP4 LTSS

zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-3362=1

* SUSE Linux Enterprise Micro for Rancher 5.4

zypper in -t patch SUSE-SLE-Micro-5.4-2026-3362=1

* SUSE Linux Enterprise Micro 5.4

zypper in -t patch SUSE-SLE-Micro-5.4-2026-3362=1

* SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4

zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-3362=1

* SUSE Linux Enterprise Server for SAP...

* openSUSE Leap 15.4 (aarch64 i586 ppc64le s390x x86_64)

* ctdb-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-client-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-debugsource-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-client-libs-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-ldb-ldap-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-libs-python3-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-ldb-ldap-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* ctdb-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-winbind-libs-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-test-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-ad-dc-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-libs-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* samba-client-4.15.13+git.808.eeca19f5e1-150400.3.52.1

* libsamba-policy0-python3-debuginfo-4.15.13+git.808.eeca19f5e1-150400.3.52.1

*

*

*

*

*

*

*

*

*

*

*

*

*

*

Get the latest Linux and open source security news straight to your inbox.