Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 41 Samba Critical Update for CVE-2025-9640 and CVE-2025-10230

fedora
Calendar Grey October 23, 2025
Dist Fedora Esm H88
Fixes for critical Samba vulnerabilities CVE-2025-9640 and CVE-2025-10230 available in Fedora 41 updates.
Security fix for CVE-2025-9640 and CVE-2025-10230

Summary

Samba is the standard Windows interoperability suite of programs for Linux and

Unix.

Update Information:

Security fix for CVE-2025-9640 and CVE-2025-10230

Change Log

* Fri Oct 17 2025 Gnther Deschner - 2:4.21.9-1 - Fix version * Fri Oct 17 2025 Gnther Deschner - 2:4.21.8-2 - Update to Samba 4.21.9 - resolves: rhbz#2391698 - Security fix for CVE-2025-9640 - resolves: rhbz#2394377 - Security fix for CVE-2025-10230

References


[ 1 ] Bug #2391698 - CVE-2025-9640 samba: vfs_streams_xattr uninitialized memory write possible https://bugzilla.redhat.com/show_bug.cgi?id=2391698 [ 2 ] Bug #2394377 - CVE-2025-10230 samba: Command Injection in WINS Server Hook Script https://bugzilla.redhat.com/show_bug.cgi?id=2394377

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-c0830ff9f4' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: samba
Product: Fedora 41
Version: 4.21.9
Release: 1.fc41
URL:
Summary: Server and Client software to interoperate with Windows machines

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here