SAMBA+ 4.11.3, 4.10.11 and 4.9.17 security releases available

SAMBA+ 4.11.3, 4.10.11 and 4.9.17 packages have just been released by SerNet. These are important security releases for AD DCs, please update affected systems as soon as possible. The packages are available for various SUSE and Red Hat platforms as well as for Debian GNU/Linux and Ubuntu.

The packages address the following issues:

  • CVE-2019-14861: Samba AD DC zone-named record Denial of Service in DNS management server (dnsserver).
  • CVE-2019-14870: DelegationNotAllowed not being enforced in protocol transition on Samba AD DC.

For more details and workarounds, please see

Also, SAMBA+ Long Term Support packages 4.8.12-25.lts.3, 4.7.12-21.lts.5 and 4.6.16-17.lts.7 including these fixes are available now.

SAMBA+ packages and all later versions are available as software subscription. They can be purchased at the SAMBA+ shop, detailed information and prices are listed at The subscriptions are managed at our platform OPOSSO ( Users can activate their subscriptions here and manage access credentials. The new SAMBA+ packages are included in existing subscriptions.


SerNet's Samba newsletter informs you about all important developments and events with its main focus on new packages.

+ subscribe to Newsletter

RSS Feed

Don't miss any more SAMBA+ news? Read the latest in your feed reader of choice.

+ subscribe to RSS feed


Buy and manage software subscriptions. SAMBA+ subscriptions are available for one, two and three years at the SAMBA+ shop.

+ visit the shop

Deutsche SpracheEnglish languageLangue fran├žaise