Slackware alert SSA:2026-158-01 (samba)
| From: | Slackware Security Team <security@slackware.com> | |
| To: | slackware-security@slackware.com | |
| Subject: | [slackware-security] samba (SSA:2026-158-01) | |
| Date: | Sun, 07 Jun 2026 15:33:08 -0700 | |
| Message-ID: | <alpine.LNX.2.02.2606071532460.24869@connie.slackware.com> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] samba (SSA:2026-158-01) New samba packages are available for Slackware 15.0 to fix security issues. Here are the details from the Slackware 15.0 ChangeLog: +--------------------------+ extra/samba-4.22.10-i586-1_slack15.0.txz: Upgraded. This is a security release in order to address the following defects: Missing access checks on reparse point operations. WORM vfs module does not block overwrites. auto-enrolment GPO installing CA certificate over http without verification. Denial of service against AD DC WINS server. Unauthenticated Remote Code Execution in Samba DCE/RPC SAMR server. Unauthenticated Remote Code Execution in Samba printing subsystem. For more information, see: https://www.samba.org/samba/security/CVE-2026-1933.html https://www.samba.org/samba/security/CVE-2026-2340.html https://www.samba.org/samba/security/CVE-2026-3012.html https://www.samba.org/samba/security/CVE-2026-3238.html https://www.samba.org/samba/security/CVE-2026-4408.html https://www.samba.org/samba/security/CVE-2026-4480.html https://www.cve.org/CVERecord?id=CVE-2026-1933 https://www.cve.org/CVERecord?id=CVE-2026-2340 https://www.cve.org/CVERecord?id=CVE-2026-3012 https://www.cve.org/CVERecord?id=CVE-2026-3238 https://www.cve.org/CVERecord?id=CVE-2026-4408 https://www.cve.org/CVERecord?id=CVE-2026-4480 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open Source Lab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://slackware.com for additional mirror sites near you. Updated package for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/extr... Updated package for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/ex... MD5 signatures: +-------------+ Slackware 15.0 package: 74437119c84e65f40ff2d1074fc71080 samba-4.22.10-i586-1_slack15.0.txz Slackware x86_64 15.0 package: 55fc2128809e2e0ab6a9fe31014525e7 samba-4.22.10-x86_64-1_slack15.0.txz Installation instructions: +------------------------+ Upgrade the package as root: # upgradepkg samba-4.22.10-i586-1_slack15.0.txz Then, if Samba is running restart it: # /etc/rc.d/rc.samba restart +-----+ Slackware Linux Security Team http://slackware.com/gpg-key security@slackware.com +------------------------------------------------------------------------+ | To leave the slackware-security mailing list: | +------------------------------------------------------------------------+ | Send an email to majordomo@slackware.com with this text in the body of | | the email message: | | | | unsubscribe slackware-security | | | | You will get a confirmation message back containing instructions to | | complete the process. Please do not reply to this email address. | +------------------------------------------------------------------------+ -----BEGIN PGP SIGNATURE----- iHkEARECADkWIQTsVknaQB4iq/pnNu9qRGPAQBAiMwUCaiXvghsUgAAAAAAEAA5t YW51MiwyLjUrMS4xMiwyLDIACgkQakRjwEAQIjMQ1ACffU8rhTadAAgdCyodXmSc 6+hM/EAAn0vdH/HVuX7bDfLVxOZSy8/QpWHF =yCd5 -----END PGP SIGNATURE-----
