Project Subscriptions
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6297-1 | samba security update |
Ubuntu USN |
USN-8306-1 | Samba vulnerabilities |
Solution
No solution given by the vendor.
Workaround
As a workaround, deployments that do not strictly require Samba-provided WINS functionality should disable WINS support by removing: ``` wins support = yes ``` from the Samba configuration.
Mon, 08 Jun 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protocol handlers for certain request types did not properly validate incoming packets, allowing an unauthenticated remote attacker to trigger a NULL pointer dereference and crash the WINS service using specially crafted UDP packets. | |
| Title | Samba: denial of service against ad dc wins server | |
| First Time appeared |
Redhat
Redhat enterprise Linux Redhat openshift |
|
| Weaknesses | CWE-476 | |
| CPEs | cpe:/a:redhat:openshift:4 cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:6 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 |
|
| Vendors & Products |
Redhat
Redhat enterprise Linux Redhat openshift |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-06-08T08:29:25.265Z
Reserved: 2026-02-26T00:47:38.208Z
Link: CVE-2026-3238
No data.
Status : Received
Published: 2026-06-08T09:16:30.160
Modified: 2026-06-08T09:16:30.160
Link: CVE-2026-3238
No data.
OpenCVE Enrichment
Updated: 2026-06-08T09:30:20Z
Debian DSA
Ubuntu USN