gpp_maybe Security update for samba
SUSE-SLE-Micro-5.4-2026-3362


This update for samba fixes the following issues - CVE-2026-6949: TSIG packet with crafted name compression can crash internal DNS server (bsc#1271672). - CVE-2026-15779: `pam_winbind` module with `mkhomedir` set allows `chown` of critical system paths without validation (bsc#1271469). - CVE-2026-58216: 6-byte heap OOB read in packet parser of the `kpasswd` service (bsc#1271674). - CVE-2026-58218: DNS TKEY negotiation stores unauthenticated GSS contexts in a fixed FIFO before authentication completes (bsc#1271675). - CVE-2026-58221: authenticated LDAP access to internal LDB special DNs permits domain takeover (bsc#1271676). - CVE-2026-58222: LDAP Compare filter injection and trusted-request confusion disclose protected attributes (bsc#1271677). - CVE-2026-58224: heap OOB read due to unchecked packet length fields in CTDB (bsc#1271673).


cloud_download Downloads

SUSE Linux Enterprise Micro 5.4 s390x
  • Packages
    samba
    A SMB/CIFS File, Print, and Authentication Server
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock src
    samba-client-libs
    Samba client libraries
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock rpm
    samba-libs
    Samba libraries
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock rpm
SUSE Linux Enterprise Micro 5.4 aarch64
  • Packages
    samba
    A SMB/CIFS File, Print, and Authentication Server
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock src
    samba-client-libs
    Samba client libraries
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock rpm
    samba-libs
    Samba libraries
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock rpm
SUSE Linux Enterprise Micro 5.4 x86_64
  • Packages
    samba
    A SMB/CIFS File, Print, and Authentication Server
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock src
    samba-client-libs
    Samba client libraries
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock rpm
    samba-libs
    Samba libraries
    4.15.13+git.808.eeca19f5e1-150400.3.52.1 lock rpm