---
title: "CVE-2006-1059\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2006-1059?format=md
keywords: index, follow
---

# CVE-2006-1059

Publication date 30 March 2006

Last updated 17 July 2025

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

The winbindd daemon in Samba 3.0.21 to 3.0.21c writes the machine trust
account password in cleartext in log files, which allows local users to
obtain the password and spoof the server in the domain.

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| samba | 7.04 feisty | Fixed 3.0.24-2ubuntu1.2 |
| 6.10 edgy | Fixed 3.0.22-1ubuntu4.2 |
| 6.06 LTS dapper | Fixed 3.0.22-1ubuntu3.3 |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1059)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2006-1059)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2006-1059)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2006-1059)

### Other references

* <https://www.cve.org/CVERecord?id=CVE-2006-1059>
