CVE-2026-25706: yast2-samba-client: OS command injection via attacker-controlled Organizational Unit (Active Directory-supplied)

Published Sep 1, 2026
·
Updated

Improper neutralization of special elements used in an OS command in yast2-samba-client allows an attacker who controls the content of an Active Directory directory tree - a rogue domain controller, or a directory user delegated the right to create objects - to execute arbitrary commands as root on a machine being joined to that domain. This issue affects yast2-samba-client through 5.0.4.

Affected Software

1 affected component
yast2-samba-client<=5.0.4

Event History

Sep 1, 2026
CVE Published
via MITRE·09:51 AM
Data Sourced
via MITRE·09:51 AM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Who can exploit this issue?

An attacker must control content in the target Active Directory directory tree. This can be a rogue domain controller or a directory user delegated permission to create objects.

2

When is a machine exposed to command execution?

The vulnerable condition is reached on a machine being joined to the attacker-controlled domain. Successful exploitation executes arbitrary commands as root.

3

Which versions are affected?

yast2-samba-client is affected through version 5.0.4.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203