Back Linuxsecurity Fedora 44 Samba 4.24.3 Security Update Remote Code Execution CVE-2026
Update to Samba 4.24.3 - Security fix for CVE-2026-4480, CVE-2026-2340, CVE-2026-3012, CVE-2026-1933, CVE-2026-4408, and CVE-2026-3238
* Thu May 28 2026 Günther Deschner - 2:4.24.3-1 - Update to Samba 4.24.3 - resolves: rhbz#2481468 - resolves: rhbz#2481447 - Security fix for CVE-2026-4480 - resolves: rhbz#2481875 - Security fix for CVE-2026-2340 - resolves: rhbz#2481857 - Security fix for CVE-2026-3012 - resolves: rhbz#2481876 - Security fix for CVE-2026-1933 - Security fix for CVE-2026-4408 - Security fix for CVE-2026-3238
* Thu May 28 2026 Günther Deschner - 2:4.24.3-1 - Update to Samba 4.24.3 - resolves: rhbz#2481468 - resolves: rhbz#2481447 - Security fix for CVE-2026-4480 - resolves: rhbz#2481875 - Security fix for CVE-2026-2340 - resolves: rhbz#2481857 - Security fix for CVE-2026-3012 - resolves: rhbz#2481876 - Security fix for CVE-2026-1933 - Security fix for CVE-2026-4408 - Security fix for CVE-2026-3238
[ 1 ] Bug #2481447 - CVE-2026-4480 samba: Samba: Remote Code Execution in printing subsystem via unescaped job description [fedora-all] [ 2 ] Bug #2481468 - samba-4.24.3 is available [ 3 ] Bug #2481857 - CVE-2026-3012 samba: group policy certificate enrollment uses http:// without validation [fedora-all] [ 4 ] Bug #2481875 - CVE-2026-2340 samba: vfs_worm does not block directory modification [fedora-all] [ 5 ] Bug #2481876 - CVE-2026-1933 samba: Missing access check on reparse point operations [fedora-all]
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-7567819345' at the command line. For more information, refer to the dnf documentation available at
Get the latest Linux and open source security news straight to your inbox.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
