[Pkg-samba-maint] Bug#1108904: samba: Windows security hardening locks out schannel'ed netlogon dc calls like netr_DsRGetDCName

Salvatore Bonaccorso carnil at debian.org
Mon Jul 7 15:08:52 BST 2025


Hi Michael,

On Mon, Jul 07, 2025 at 03:38:31PM +0200, Salvatore Bonaccorso wrote:
> Source: samba
> Version: 2:4.22.2+dfsg-1
> Severity: serious
> Tags: upstream
> Forwarded: https://bugzilla.samba.org/show_bug.cgi?id=15876 https://gitlab.com/samba-team/samba/-/merge_requests/4086
> X-Debbugs-Cc: carnil at debian.org
> 
> Hi Michael,
> 
> Yesterday the following heads up was posted to the Samba announce
> list:
> https://lists.samba.org/archive/samba-announce/2025/000693.html
> https://bugzilla.samba.org/show_bug.cgi?id=15876
> https://gitlab.com/samba-team/samba/-/merge_requests/4086
> 
> To be on the safe side I make this RC level, since my understanding is
> that samba servers acting s AD members in such environments will stop
> working properly if tomorrows Windows updates are deployed, is this
> correct?
> 
> The upstream bug contains references to the two upstream changes.

Proposed MRs (but untested so far!)

https://salsa.debian.org/samba-team/samba/-/merge_requests/67 (unstable,trixie)
https://salsa.debian.org/samba-team/samba/-/merge_requests/68 (bookworm)

Regards,
Salvatore



More information about the Pkg-samba-maint mailing list