The current version of Samba is 4.25.0 (as of 26/09/2026). patchletter checks the official source daily and emails you new releases.
Actively exploited vulnerabilities
The US cybersecurity agency CISA lists this vulnerability in its catalog of Known Exploited Vulnerabilities. What CISA does not carry does not appear in this list — even where it is being exploited.
9.8 critical · over the network, without login · CISA deadline was 20 Apr 23
Source: CISA KEV. The CVE is matched to the product automatically — when in doubt, the linked NVD entry applies.
BSI security advisories
Advisories the German BSI (CERT-Bund) published for this product. Whether your version is affected is stated in the advisory itself.
- Samba: Mehrere Schwachstellen
WID-SEC-W-2026-2549 · 9 Oct
- Samba: Mehrere Schwachstellen
WID-SEC-W-2026-1686 · 2 Oct
- Samba: Mehrere Schwachstellen
WID-SEC-W-2023-0796 · 1 Sept
- Samba: Schwachstelle ermöglicht Denial of Service
WID-SEC-W-2026-2376 · 1 Sept
- Samba: Mehrere Schwachstellen
WID-SEC-W-2022-0842 · 1 Sept
- Samba: Schwachstelle ermöglicht Denial of Service
WID-SEC-W-2022-0588 · 1 Sept
- Samba: Mehrere Schwachstellen
WID-SEC-W-2026-3111 · 1 Sept
- Samba: Mehrere Schwachstellen ermöglichen Denial of Service
WID-SEC-W-2026-3123 · 1 Sept
Samba at a glance
Samba provides Windows-compatible file sharing and Active Directory services on Linux/Unix — a cornerstone of mixed networks. Samba ships regular releases across maintained branches plus coordinated security fixes; as network-facing software (and often an AD domain controller), its advisories deserve prompt attention.
For admins Samba usually comes from the distribution, which backports fixes — for serious advisories (several have been critical, including remote-code and privilege issues), confirm the patched package is installed and services restarted. Where Samba acts as an AD domain controller, updates need extra care and testing, as it's core identity infrastructure. Harden the configuration: disable obsolete SMB1, restrict shares, and keep it off untrusted networks. After updating, verify shares, authentication and (for a DC) replication. Track the branch and its support window; patchletter surfaces new Samba releases.
Version history & changelog · as detected by patchletter
| Version | Channel | Date | Notes |
|---|---|---|---|
| 4.25.0 | STABLE | 26/09/2026 | – |
| 4.24.7 | STABLE | 10/09/2026 | – |
| 4.24.6 | STABLE | 14/08/2026 | – |
| 4.24.5 | STABLE | 29/07/2026 | – |
| 4.24.4 | STABLE | 08/07/2026 | – |
Frequently asked questions
- What is the latest version of Samba?
- Samba 4.25.0, released 26/09/2026. patchletter checks the vendor's official source daily for new releases.
- Where can I find the Samba release notes?
- The version history above links to the vendor's official release notes where the vendor publishes them. patchletter deliberately stores no vendor full texts.
- How do I get notified about new Samba updates?
- Tick Samba off in the catalogue and leave your address. From then on new versions go out by email — one at a time, or bundled in the daily or weekly digest.
An email as soon as a new Samba version ships
We reconcile the vendor source daily. When a new version appears, it lands in your inbox right away or bundled as a digest. The update email is free and ends with one click. Alerts about vulnerabilities and end of support are part of patchletter Pro.
Embed this badge
The badge shows the current Samba version and keeps it up to date. Anyone may embed it, no account needed.
[](https://patchletter.com/en/software/samba)https://patchletter.com/badge/samba.svgAlso available: ?v=eol (end of support) and ?v=cve (actively exploited).