CVE-2026-58224: Missing Support for Integrity Check in Red Hat Red Hat Enterprise Linux 10
A flaw was found in Samba's CTDB, the clustered database service used by Samba. Insufficient integrity validation of received CTDB protocol packets allows malformed packets containing invalid field lengths, improperly terminated strings, or inconsistent packet sizes to be processed without adequate bounds checking. A remote attacker with access to the CTDB private network may trigger a denial of service through process crashes or excessive memory consumption and, in limited cases, disclose adjacent memory contents.
CVE-2026-58224: Missing Support for Integrity Check in Red Hat Red Hat Enterprise Linux 10
Description
A flaw was found in Samba's CTDB, the clustered database service used by Samba. Insufficient integrity validation of received CTDB protocol packets allows malformed packets containing invalid field lengths, improperly terminated strings, or inconsistent packet sizes to be processed without adequate bounds checking. A remote attacker with access to the CTDB private network may trigger a denial of service through process crashes or excessive memory consumption and, in limited cases, disclose adjacent memory contents.
CVSS v3.1
Score 6.5medium
Affected software
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.14.04.20+esm15?arch=source&distro=esm-infra-legacy/trustypkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.16.04.34+esm4?arch=source&distro=esm-infra/xenialpkg:deb/ubuntu/samba@2:4.7.6+dfsg~ubuntu-0ubuntu2.29+esm3?arch=source&distro=esm-infra/bionicpkg:deb/ubuntu/samba@2:4.15.13+dfsg-0ubuntu0.20.04.8+esm2?arch=source&distro=esm-infra/focalpkg:deb/ubuntu/samba@2:4.15.13+dfsg-0ubuntu1.13?arch=source&distro=jammypkg:deb/ubuntu/samba@2:4.19.5+dfsg-4ubuntu9.7?arch=source&distro=noblepkg:deb/ubuntu/samba@2:4.23.6+dfsg-1ubuntu2.2?arch=source&distro=resoluteRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- UBUNTU-CVE-2026-58224
- Osv Schema Version
- 1.7.0
- Ecosystems
- ["Ubuntu:Pro:14.04:LTS","Ubuntu:Pro:16.04:LTS","Ubuntu:Pro:18.04:LTS","Ubuntu:Pro:20.04:LTS","Ubuntu:22.04:LTS","Ubuntu:24.04:LTS","Ubuntu:26.04:LTS"]
Threat ID: 6a6941bb9c2644c7f86af494
Added to database: 07/28/2026, 23:56:43 UTC
Last updated: 09/12/2026, 10:01:32 UTC
Views: 79
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.