Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <da7aa05f-01c0-4798-8496-33f1c0010e4e@catalyst.net.nz>
Date: Thu, 9 Oct 2025 17:46:22 +1300
From: Douglas Bagnall <douglas.bagnall@...alyst.net.nz>
To: oss-security@...ts.openwall.com
Subject: Fwd: Heads-up: Upcoming Samba security releases

The Samba team (which includes me) has announced there will be a 
security release next Wednesday. This is our standard procedure, though 
this time we have added an estimate of how many people might be affected 
by each bug.

Douglas

-------- Forwarded Message --------
Subject: Heads-up: Upcoming Samba security releases
Date: Thu, 9 Oct 2025 17:38:13 +1300
From: Douglas Bagnall via samba-technical <samba-technical@...ts.samba.org>
Reply-To: Douglas Bagnall <dbagnall@...ba.org>
To: samba-technical <samba-technical@...ts.samba.org>, samba 
<samba@...ts.samba.org>

This is a heads-up that there will be Samba security updates for 4.21, 
4.22, and 4.23 on Wednesday, October 15, 2025. Please make sure that 
your Samba servers will be updated soon after the release!

Impacted component:
  - AD DC (CVSS 10, High, when using a very unusual configuration)
  - File services (CVSS 4.3, Low, in a widely used configuration)

The AD DC bug will affect very few, possibly zero, users.

cheers,
Douglas Bagnall
Samba Team and Catalyst IT


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.