-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 15 May 2026 06:38:23 +0300 Source: samba Binary: samba-ad-provision samba-common Architecture: all Version: 2:4.22.8+dfsg-0+deb13u2 Distribution: trixie-security Urgency: medium Maintainer: all / amd64 / i386 Build Daemon (x86-grnet-03) Changed-By: Michael Tokarev Description: samba-ad-provision - Samba files needed for AD domain provision samba-common - common files used by both the Samba server and client Changes: samba (2:4.22.8+dfsg-0+deb13u2) trixie-security; urgency=medium . * https://bugzilla.samba.org/show_bug.cgi?id=16018 May-2026 samba security update fixing the following issues: CVE-2026-1933: Missing access check on reparse point operations https://bugzilla.samba.org/show_bug.cgi?id=15992 CVE-2026-2340: vfs_worm does not block directory modification https://bugzilla.samba.org/show_bug.cgi?id=15997 CVE-2026-3012: group policy certificate enrollment uses http:// without validation https://bugzilla.samba.org/show_bug.cgi?id=16003 CVE-2026-3238: unauthenticated udp packet crashes AD DC nbt server https://bugzilla.samba.org/show_bug.cgi?id=16012 CVE-2026-4480: Unauthenticated Remote Code Execution using print command https://bugzilla.samba.org/show_bug.cgi?id=16033 CVE-2026-4408: Remote Code Execution in SAMR when check password script contains %u substitution placeholder https://bugzilla.samba.org/show_bug.cgi?id=16034 Checksums-Sha1: 261852a8c82f7cd6a0cdc17f645eebb9411b83dc 506344 samba-ad-provision_4.22.8+dfsg-0+deb13u2_all.deb af8c45c2405222343779636f59efeb7d79b7ea26 63032 samba-common_4.22.8+dfsg-0+deb13u2_all.deb 941eb246bc2c827aed6a70a573438327769c987f 5925 samba_4.22.8+dfsg-0+deb13u2_all-buildd.buildinfo Checksums-Sha256: cfb858f40cbcd6dfbc31fbbe95c4ef58d4863d39f3a32013a3e1762b67132ad4 506344 samba-ad-provision_4.22.8+dfsg-0+deb13u2_all.deb 50a7586f6ea96bb893ee79f0eb960d8ae082f890c86bbe12af80491239956a54 63032 samba-common_4.22.8+dfsg-0+deb13u2_all.deb 60d9ee4f9dae833cef38baf596ae7c3bec600a1fc7f0e260c6696716ba418a0e 5925 samba_4.22.8+dfsg-0+deb13u2_all-buildd.buildinfo Files: b19825b79d7cd9e04796f137cb685c4b 506344 net optional samba-ad-provision_4.22.8+dfsg-0+deb13u2_all.deb d13aa5e60a197fc7bdad7e5c6c97ab73 63032 net optional samba-common_4.22.8+dfsg-0+deb13u2_all.deb 15c28192d34d209dc49563da31eb0824 5925 net optional samba_4.22.8+dfsg-0+deb13u2_all-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE5ZI1lXv5WjhHIVjsN8Ugyu9dQiQFAmoQH0EACgkQN8Ugyu9d QiR+fxAAlqDJ3HVPcRxuuLbm7elgP4m9E2+XnI3314KR56GsEoA3iCQM7h8s65Rz VDhX5K0dkiAW6YcJyjo7ahKSRwuQO39RkuiM8UtV9ErD6DhxFvWFazyxHarwukG5 HSzZ8asgUDYkXxrqpG57wYH6yXvDaCtfDWUct+/bTVMwcK/QHDCfVGhdNLEl6J+L +50+35G7+T64ptmMosw0tt6vyKc1Hr37qOoSDUPYFI2dZZe0LvjrMjBUWQ1/px06 d21QM4X7ExNv3g1owfMP2blyUA6cHGGynuNRvftW4yfFMleferrLHuNl0zatDETY 2qlKBS4Ih6K1lwdhhMFDAshr1Fr2jCC/YJJ9zybhlCTqD7OHNDZA1sC/L3xbjya+ d0QFN1AtjMOYzKJnY+zT5m4/BueuEc7Dhihy3CcKn8kM7MGcB49LQmu+Lh4ka/31 mlj/4WmHP+cE+DGUk0bhZNLDUt9CizC8RaDSsObEIZiOm5bMgLW1RJ8JHDrmLFby cSpMqG1IyfJXROj84+pN3TGhBG9PFyRHCBMhZO+JnauJ5aqG0YigFXHAKrTiy6Jo uDJQfbxGU/UiYLYxK5MkVA31SRftD0FQteuv/e4T8JhUqxY0acB5SsQBbgXCIGo7 ZlPb3n8K+cdleqyBZw22NX+EzXswTHpIZn2bGo5jAgF+ISvh6lo= =XXOC -----END PGP SIGNATURE-----