This bug was fixed in the package samba - 2:4.24.6+dfsg-1ubuntu1
---------------
samba (2:4.24.6+dfsg-1ubuntu1) stonking; urgency=medium
* Merge with Debian unstable (LP: #2164694). Remaining changes:
- Ubuntu i386 binary compatibility:
+ d/control: enable the liburing vfs module, except on i386 where
liburing is not available
+ python3-samba depends on python3-cryptography, which Ubuntu doesn't
build on i386 (LP #2099895):
- d/control: don't recommend python3-samba on i386
- d/rules: don't build python3-samba on ubuntu i386
- d/t/control, d/t/util,d/t/samba-ad-dc-provisioning-internal-dns:
samba AD DC provisioning and domain join tests with internal DNS
(LP #1977746, LP #2011745)
- d/control: have the (now transitional) samba-vfs-modules package
depend on samba-vfs-ceph, so that upgrades retain the ceph vfs
module
- d/control: samba-vfs-modules should only depend on the new
samba-vfs-ceph and samba-vfs-glusterfs packages on the
architectures where those two packages are built (LP #2076682)
- d/p/fix-motd-gpo-list-empty.patch: fix crash when listing an empty MOTD
GPO
- d/t/samba-ad-dc-provisioning-internal-dns: add MOTD GPO test
- d/control, d/samba-libs.install: remove the pkg.samba.builtin-ngtcp2
build profile and the build dependency on libngtcp2 because it's in
universe, and switch to the builtin version shipped with samba.
- d/t/control: certain tests don't work on i386 in Ubuntu
- d/t/samba-ad-dc-provisioning-internal-dns: force a known short
hostname to avoid netbios length limitations (LP #2160627)
samba (2:4.24.6+dfsg-1) unstable; urgency=medium
* debian/upstream/signing-key.asc: update
* new upstream stable.bugfix release:
- https://bugzilla.samba.org/show_bug.cgi?id=15978:
leases torture test flappy (marked flappy)
- https://bugzilla.samba.org/show_bug.cgi?id=15994:
CTDB doesn't send tickle ACKs when taking over a released IP
- https://bugzilla.samba.org/show_bug.cgi?id=16065:
Memory leak in DRS when replication fails
- https://bugzilla.samba.org/show_bug.cgi?id=16077:
witness test flappy needs to be fixed
- https://bugzilla.samba.org/show_bug.cgi?id=16093:
temporary read of unrelated or non-existing memory in s3 dfs server
- https://bugzilla.samba.org/show_bug.cgi?id=16094:
source4/dsdb/samdb/cracknames.c doesn't use ldb_binary_encode_string()
consistently
- https://bugzilla.samba.org/show_bug.cgi?id=16152:
CTDB can run nested elections, in rare circumstances
- https://bugzilla.samba.org/show_bug.cgi?id=16153:
dsgetdcname() may not detect an active directory domain if the
netbios domain name is given and nmbd nor the nbt service is available
- https://bugzilla.samba.org/show_bug.cgi?id=16176:
vfs_ceph_snapshots: smbd panics on snapshot access for a share
mounted at the CephFS root ("/")
- https://bugzilla.samba.org/show_bug.cgi?id=16186:
vfs_ceph_new: smbd crashes when mixing proxy and non-proxy CephFS shares
- https://bugzilla.samba.org/show_bug.cgi?id=16191:
race condition in pthreadpool when forking
- https://bugzilla.samba.org/show_bug.cgi?id=16199:
ndr_{push,pull,print}_{timeval,timespec} encode/decode the value twice
* d/samba-libs.symbols: add new ndr symbols
samba (2:4.24.5+dfsg-1) unstable; urgency=medium
* new upstream Jul-2026 secrity release, fixing the following issues:
CVE-2026-6949: TSIG packet with name compression can crash DNS
https://www.samba.org/samba/security/CVE-2026-6949.html
CVE-2026-58216: An authenticated user could possibly crash a KDC process
https://www.samba.org/samba/security/CVE-2026-58216.html
CVE-2026-58218: DNS signing DoS via TKEY name cache exhaustion
https://www.samba.org/samba/security/CVE-2026-58218.html
CVE-2026-58221: Samba AD authenticated LDAP access domain takeover
https://www.samba.org/samba/security/CVE-2026-58221.html
CVE-2026-58222: Samba AD LDAP Compare filter injection and
trusted-request confusion disclose protected attributes
https://www.samba.org/samba/security/CVE-2026-58222.html
CVE-2026-58224: The CTDB protocol has bounds checking issues
https://www.samba.org/samba/security/CVE-2026-58224.html
-- Andreas Hasenack <[email protected]> Thu, 20 Aug 2026
19:08:39 -0300
** Changed in: samba (Ubuntu)
Status: Fix Committed => Fix Released
** Bug watch added: Samba Bugzilla #15978
https://bugzilla.samba.org/show_bug.cgi?id=15978
** Bug watch added: Samba Bugzilla #15994
https://bugzilla.samba.org/show_bug.cgi?id=15994
** Bug watch added: Samba Bugzilla #16065
https://bugzilla.samba.org/show_bug.cgi?id=16065
** Bug watch added: Samba Bugzilla #16077
https://bugzilla.samba.org/show_bug.cgi?id=16077
** Bug watch added: Samba Bugzilla #16093
https://bugzilla.samba.org/show_bug.cgi?id=16093
** Bug watch added: Samba Bugzilla #16094
https://bugzilla.samba.org/show_bug.cgi?id=16094
** Bug watch added: Samba Bugzilla #16152
https://bugzilla.samba.org/show_bug.cgi?id=16152
** Bug watch added: Samba Bugzilla #16153
https://bugzilla.samba.org/show_bug.cgi?id=16153
** Bug watch added: Samba Bugzilla #16176
https://bugzilla.samba.org/show_bug.cgi?id=16176
** Bug watch added: Samba Bugzilla #16186
https://bugzilla.samba.org/show_bug.cgi?id=16186
** Bug watch added: Samba Bugzilla #16191
https://bugzilla.samba.org/show_bug.cgi?id=16191
** Bug watch added: Samba Bugzilla #16199
https://bugzilla.samba.org/show_bug.cgi?id=16199
** CVE added: https://cve.org/CVERecord?id=CVE-2026-58216
** CVE added: https://cve.org/CVERecord?id=CVE-2026-58218
** CVE added: https://cve.org/CVERecord?id=CVE-2026-58221
** CVE added: https://cve.org/CVERecord?id=CVE-2026-58222
** CVE added: https://cve.org/CVERecord?id=CVE-2026-58224
** CVE added: https://cve.org/CVERecord?id=CVE-2026-6949
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2164694
Title:
Second samba merge for stonking
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/2164694/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs