openSUSE-SU-2026:20905-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:20905-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/openSUSE-SU-2026:20905-1
Upstream
CVE (6)
Related
Published
2026-06-05T08:45:16Z
Modified
2026-06-09T18:24:46Z
Summary
Security update for samba
Details

This update for samba fixes the following issues

Security issues:

  • CVE-2026-1933: Missing access check on reparse point operations (bsc#1261188).
  • CVE-2026-2340: vfs_worm does not block directory modification (bsc#1261158).
  • CVE-2026-3012: group policy certificate enrollment uses http: // without validation (bsc#1261159).
  • CVE-2026-3238: unauthenticated udp packet crashes AD DC nbt server (bsc#1261160).
  • CVE-2026-4408: Remote Code Execution in SAMR (bsc#1261163).
  • CVE-2026-4480: Unauthenticated Remote Code Execution (bsc#1261161).

Changes for samba:

  • network:samba:STABLE/samba: "use-kerberos=desired" broken / Dolphin requires login for Samba shares (bsc#1255755).
  • Samba service start times out (SElinux relabel takes too long) (bsc#1259050).
  • samba-ad-dc-libs packages is missing a DLZ plugin for bind 9.20 (bsc#1249058).
  • VFS_Snapper does not show previous file versions in subdirectories. (bsc#1259667).
  • Updated to 4.22.9
References

Affected packages

openSUSE:Leap 16.0 / samba

Package

Name
samba
Purl
pkg:rpm/opensuse/samba&distro=openSUSE%20Leap%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
4.22.9+git.506.22c03ce0781-160000.1.1

Ecosystem specific

{
    "binaries": [
        {
            "ctdb": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "ctdb-pcp-pmda": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "ldb-tools": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "libldb-devel": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "libldb2": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "python3-ldb": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-ad-dc": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-ad-dc-libs": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-ceph": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-client": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-client-libs": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-dcerpc": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-devel": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-doc": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-dsdb-modules": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-gpupdate": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-ldb-ldap": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-libs": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-libs-python3": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-python3": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-test": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-tool": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-winbind": "4.22.9+git.506.22c03ce0781-160000.1.1",
            "samba-winbind-libs": "4.22.9+git.506.22c03ce0781-160000.1.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:20905-1.json"