https://seclists.org/oss-sec/2025/q4/49: Samba security leases for CVE-2025-10230 and CVE-2025-9640
Published Oct 16, 2025
·Updated
Affected Software
1 affected component
Samba Samba
Frequently Asked Questions
1
What is the severity of CVE-2025-10230?
CVE-2025-10230 is classified as a high severity vulnerability affecting Samba.
2
What is the main issue described in CVE-2025-9640?
CVE-2025-9640 describes a vulnerability related to illegal characters in NetBIOS hostnames handling within Samba.
3
How do I fix CVE-2025-10230?
To fix CVE-2025-10230, update your Samba installation to the latest patched version.
4
Are any specific configurations required to mitigate CVE-2025-9640?
Yes, ensure that illegal characters are not included in NetBIOS hostnames to mitigate CVE-2025-9640.
5
When was CVE-2025-10230 published?
CVE-2025-10230 was published on October 16, 2025.