{"id":"DEBIAN-CVE-2025-10230","details":"A flaw was found in Samba, in the front-end WINS hook handling: NetBIOS names from registration packets are passed to a shell without proper validation or escaping. Unsanitized NetBIOS name data from WINS registration packets are inserted into a shell command and executed by the Samba Active Directory Domain Controller’s wins hook, allowing an unauthenticated network attacker to achieve remote command execution as the Samba process.","modified":"2026-09-01T20:05:40.150199307Z","published":"2025-11-07T20:15:35.630Z","upstream":["CVE-2025-10230"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2025-10230"}],"affected":[{"package":{"name":"samba","ecosystem":"Debian:12","purl":"pkg:deb/debian/samba?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:4.17.12+dfsg-0+deb12u3"}]}],"versions":["2:4.17.10+dfsg-0+deb12u1","2:4.17.10+dfsg-0+deb12u1~bpo11+1","2:4.17.11+dfsg-0+deb12u1","2:4.17.12+dfsg-0+deb12u1","2:4.17.12+dfsg-0+deb12u1~bpo11+1","2:4.17.12+dfsg-0+deb12u2","2:4.17.8+dfsg-2","2:4.17.8+dfsg-2.1","2:4.17.9+dfsg-0+deb12u1","2:4.17.9+dfsg-0+deb12u2","2:4.17.9+dfsg-0+deb12u3","2:4.17.9+dfsg-0+deb12u3~bpo11+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-10230.json"}},{"package":{"name":"samba","ecosystem":"Debian:13","purl":"pkg:deb/debian/samba?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:4.22.6+dfsg-0+deb13u1"}]}],"versions":["2:4.22.3+dfsg-4","2:4.22.4+dfsg-1","2:4.22.4+dfsg-1~deb13u1","2:4.22.4+dfsg-1~deb13u1~bpo12+1","2:4.22.6+dfsg-0+deb13u1~bpo12+1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-10230.json"}},{"package":{"name":"samba","ecosystem":"Debian:14","purl":"pkg:deb/debian/samba?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2:4.23.2+dfsg-1"}]}],"versions":["2:4.22.3+dfsg-4","2:4.22.4+dfsg-1","2:4.22.4+dfsg-1~deb13u1","2:4.22.4+dfsg-1~deb13u1~bpo12+1","2:4.23.0+dfsg-1","2:4.23.0+dfsg-2","2:4.23.0+dfsg-3","2:4.23.0~rc1+dfsg-1","2:4.23.0~rc2+dfsg-1","2:4.23.0~rc3+dfsg-1","2:4.23.1+dfsg-1"],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-10230.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H"}]}