<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 11:46:27 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:22644 — Important: samba security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:22644</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: ctdb, AlmaLinux:8: libnetapi, AlmaLinux:8: libnetapi-devel, AlmaLinux:8: libsmbclient, AlmaLinux:8: libsmbclient-devel, AlmaLinux:8: libwbclient, AlmaLinux:8: libwbclient-devel, AlmaLinux:8: python3-samba, AlmaLinux:8: python3-samba-dc, AlmaLinux:8: python3-samba-devel and 24 more&lt;/p&gt;
&lt;p&gt;Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* samba: group policy certificate enrollment uses &amp;lt;http://&amp;gt; without validation (CVE-2026-3012)
  * samba: Samba: Remote Code Execution in printing subsystem via unescaped job description (CVE-2026-4480)
  * samba: Remote Code Execution in SAMR (CVE-2026-4408)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: ctdb, AlmaLinux:8: libnetapi, AlmaLinux:8: libnetapi-devel, AlmaLinux:8: libsmbclient, AlmaLinux:8: libsmbclient-devel, AlmaLinux:8: libwbclient, AlmaLinux:8: libwbclient-devel, AlmaLinux:8: python3-samba, AlmaLinux:8: python3-samba-dc, AlmaLinux:8: python3-samba-devel and 24 more&lt;/p&gt;
&lt;p&gt;Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* samba: group policy certificate enrollment uses &amp;lt;http://&amp;gt; without validation (CVE-2026-3012)
  * samba: Samba: Remote Code Execution in printing subsystem via unescaped job description (CVE-2026-4480)
  * samba: Remote Code Execution in SAMR (CVE-2026-4408)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:22644</guid>
    </item>
    <item>
      <title>bdu:2026-07422</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2026-07422</link>
      <description>bdu:2026-07422</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2026-07422</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0651 — De multiples vulnérabilités ont été découvertes dans Samba. Certaines d'entre elles permettent à un attaquant de provoq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0651</link>
      <description>certfr-2026-avi-0651</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0651</guid>
    </item>
    <item>
      <title>EUVD-2026-380624</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-380624</link>
      <description>EUVD-2026-380624</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-380624</guid>
    </item>
    <item>
      <title>fkie_cve-2026-3012</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-3012</link>
      <description>&lt;p&gt;A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-3012</guid>
    </item>
    <item>
      <title>GHSA-59rx-q76w-hqrw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-59rx-q76w-hqrw</link>
      <description>&lt;p&gt;A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-59rx-q76w-hqrw</guid>
    </item>
    <item>
      <title>OESA-2026-2574 — samba security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2574</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: samba&lt;/p&gt;
&lt;p&gt;Samba is a suite of programs for Linux and Unix to interoperate with Windows.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in Samba&amp;amp;apos;s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.(CVE-2026-3012)&lt;/p&gt;
&lt;p&gt;[&amp;amp;apos;-------- Forwarded Message --------&amp;amp;apos;, &amp;amp;apos;Date: Tue, 26 May 2026 14:29:50 +0200&amp;amp;apos;, &amp;amp;apos;Reply-To: Stefan Metzmacher &amp;amp;lt;metze () samba org&amp;amp;gt;&amp;amp;apos;, &amp;amp;apos;Release Announcements\n---------------------\n\nThis is a security release in order to address the following defects:\n\no CVE-2026-1933:   Missing access checks on reparse point operations\n\n                   On a share marked &amp;amp;quot;read only = yes&amp;amp;quot; and\n                   on file handles opened R/O users can set\n                   or delete the reparse point xattrs on files\n                   that the user has write-access in the file\n                   system for.&amp;amp;apos;, &amp;amp;apos;o CVE-2026-2340:   WORM vfs module does not block overwrites\n\n                   The WORM (Write-Once, Read Many) vfs module\n                   is supposed to lock write access to shared\n                   fil…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP4: samba&lt;/p&gt;
&lt;p&gt;Samba is a suite of programs for Linux and Unix to interoperate with Windows.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;A flaw was found in Samba&amp;amp;apos;s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.(CVE-2026-3012)&lt;/p&gt;
&lt;p&gt;[&amp;amp;apos;-------- Forwarded Message --------&amp;amp;apos;, &amp;amp;apos;Date: Tue, 26 May 2026 14:29:50 +0200&amp;amp;apos;, &amp;amp;apos;Reply-To: Stefan Metzmacher &amp;amp;lt;metze () samba org&amp;amp;gt;&amp;amp;apos;, &amp;amp;apos;Release Announcements\n---------------------\n\nThis is a security release in order to address the following defects:\n\no CVE-2026-1933:   Missing access checks on reparse point operations\n\n                   On a share marked &amp;amp;quot;read only = yes&amp;amp;quot; and\n                   on file handles opened R/O users can set\n                   or delete the reparse point xattrs on files\n                   that the user has write-access in the file\n                   system for.&amp;amp;apos;, &amp;amp;apos;o CVE-2026-2340:   WORM vfs module does not block overwrites\n\n                   The WORM (Write-Once, Read Many) vfs module\n                   is supposed to lock write access to shared\n                   fil…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2574</guid>
    </item>
    <item>
      <title>RHSA-2026:22644 — Red Hat Security Advisory: samba security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:22644</link>
      <description>&lt;p&gt;samba: Missing access check on reparse point operations samba: vfs_worm does not block directory modification samba: group policy certificate enrollment uses http:// without validation samba: Remote Code Execution in SAMR samba: Samba: Remote Code Execution in printing subsystem via unescaped job description&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;samba: Missing access check on reparse point operations samba: vfs_worm does not block directory modification samba: group policy certificate enrollment uses http:// without validation samba: Remote Code Execution in SAMR samba: Samba: Remote Code Execution in printing subsystem via unescaped job description&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:22644</guid>
    </item>
    <item>
      <title>RHSA-2026:28053 — Red Hat Security Advisory: samba security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:28053</link>
      <description>&lt;p&gt;samba: Missing access check on reparse point operations samba: vfs_worm does not block directory modification samba: group policy certificate enrollment uses http:// without validation samba: Remote Code Execution in SAMR samba: Samba: Remote Code Execution in printing subsystem via unescaped job description&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;samba: Missing access check on reparse point operations samba: vfs_worm does not block directory modification samba: group policy certificate enrollment uses http:// without validation samba: Remote Code Execution in SAMR samba: Samba: Remote Code Execution in printing subsystem via unescaped job description&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:28053</guid>
    </item>
    <item>
      <title>RLSA-2026:22644 — Important: samba security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:22644</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:8: samba&lt;/p&gt;
&lt;p&gt;Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* samba: group policy certificate enrollment uses http:// without validation (CVE-2026-3012)&lt;/p&gt;
&lt;p&gt;* samba: Samba: Remote Code Execution in printing subsystem via unescaped job description (CVE-2026-4480)&lt;/p&gt;
&lt;p&gt;* samba: Remote Code Execution in SAMR (CVE-2026-4408)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:8: samba&lt;/p&gt;
&lt;p&gt;Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* samba: group policy certificate enrollment uses http:// without validation (CVE-2026-3012)&lt;/p&gt;
&lt;p&gt;* samba: Samba: Remote Code Execution in printing subsystem via unescaped job description (CVE-2026-4480)&lt;/p&gt;
&lt;p&gt;* samba: Remote Code Execution in SAMR (CVE-2026-4408)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:22644</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-3012</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-3012</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:24.04:LTS: samba, Ubuntu:25.10: samba, Ubuntu:26.04:LTS: samba&lt;/p&gt;
&lt;p&gt;A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:24.04:LTS: samba, Ubuntu:25.10: samba, Ubuntu:26.04:LTS: samba&lt;/p&gt;
&lt;p&gt;A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-3012</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1686 — Samba: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1686</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Samba ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Dateien zu manipulieren, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Samba ausnutzen, um beliebigen Programmcode auszuführen, um einen Denial of Service Angriff durchzuführen, um Dateien zu manipulieren, und um Sicherheitsvorkehrungen zu umgehen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1686</guid>
    </item>
  </channel>
</rss>
