Project Subscriptions
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6297-1 | samba security update |
Ubuntu USN |
USN-8306-1 | Samba vulnerabilities |
Solution
No solution given by the vendor.
Workaround
As a workaround, deployments that do not strictly require Samba-provided WINS functionality should disable WINS support by removing: ``` wins support = yes ``` from the Samba configuration.
Tue, 09 Jun 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat openshift Container Platform
Samba Samba samba |
|
| Vendors & Products |
Redhat openshift Container Platform
Samba Samba samba |
Mon, 08 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 08 Jun 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protocol handlers for certain request types did not properly validate incoming packets, allowing an unauthenticated remote attacker to trigger a NULL pointer dereference and crash the WINS service using specially crafted UDP packets. | |
| Title | Samba: denial of service against ad dc wins server | |
| First Time appeared |
Redhat
Redhat enterprise Linux Redhat openshift |
|
| Weaknesses | CWE-476 | |
| CPEs | cpe:/a:redhat:openshift:4 cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:6 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 |
|
| Vendors & Products |
Redhat
Redhat enterprise Linux Redhat openshift |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-06-10T09:26:08.365Z
Reserved: 2026-02-26T00:47:38.208Z
Link: CVE-2026-3238
Updated: 2026-06-08T12:58:14.841Z
Status : Awaiting Analysis
Published: 2026-06-08T09:16:30.160
Modified: 2026-06-08T14:59:24.257
Link: CVE-2026-3238
No data.
OpenCVE Enrichment
Updated: 2026-06-09T08:57:24Z
Debian DSA
Ubuntu USN