Resource exhaustion in Samba - CVE-2026-58218
Published: July 28, 2026 / Updated: July 29, 2026
Samba
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper resource management in the DNS TKEY name cache when repeatedly registering TKEY names. A remote attacker can repeatedly register names to cause a denial of service.
The issue can flood the cache and expunge legitimate TKEYs, practically blocking DNS TSIG signing.