Gnoppix Security Update: Critical Samba Vulnerabilities Patched (GSA-6401-1)
Gnoppix has released urgent security updates for Samba, addressing multiple critical vulnerabilities that could allow remote code execution, privilege escalation, and denial of service.
Who is affected? Users running Samba on Gnoppix 23/25 (bookworm) and Gnoppix 25 (trixie).
What is the threat? Attackers can exploit flaws in Samba’s AD DC, netlogon, and RPC handling.
When to act? Immediately apply the update.
Critical Vulnerabilities Patched
Critical: Multiple CVEs including remote code execution in Samba’s AD domain controller.
- Remote code execution (CVE-2026-xxxx): Flaw in Samba KDC allows authenticated users to execute code as root.
- Privilege escalation (CVE-2026-xxxx): Netlogon protocol weakness lets attackers gain domain admin rights.
- Denial of service (CVE-2026-xxxx): Malformed RPC requests crash the Samba daemon.
Affected Versions
- Gnoppix 23/25 (oldstable): Samba versions before 4.17.12+dfsg-0+deb12u1.
- Gnoppix 25 (stable): Samba versions before 4.21.3+dfsg-0+deb13u1.
Action Required
Update your Samba packages immediately. For Gnoppix 23/25, run apt update && apt upgrade samba. For Gnoppix 25, follow the same command. A system restart is not required, but restarting the Samba service is recommended. - Please update your systems.