Skip to content
Fedora 44 Samba 4.24.3 Security Update Remote Code Execution CVE-2026

Fedora 44 Samba 4.24.3 Security Update Remote Code Execution CVE-2026

Linuxsecurity LinuxSecurity Advisories June 2, 2026

Update to Samba 4.24.3 - Security fix for CVE-2026-4480, CVE-2026-2340, CVE-2026-3012, CVE-2026-1933, CVE-2026-4408, and CVE-2026-3238

* Thu May 28 2026 Günther Deschner - 2:4.24.3-1 - Update to Samba 4.24.3 - resolves: rhbz#2481468 - resolves: rhbz#2481447 - Security fix for CVE-2026-4480 - resolves: rhbz#2481875 - Security fix for CVE-2026-2340 - resolves: rhbz#2481857 - Security fix for CVE-2026-3012 - resolves: rhbz#2481876 - Security fix for CVE-2026-1933 - Security fix for CVE-2026-4408 - Security fix for CVE-2026-3238

* Thu May 28 2026 Günther Deschner - 2:4.24.3-1 - Update to Samba 4.24.3 - resolves: rhbz#2481468 - resolves: rhbz#2481447 - Security fix for CVE-2026-4480 - resolves: rhbz#2481875 - Security fix for CVE-2026-2340 - resolves: rhbz#2481857 - Security fix for CVE-2026-3012 - resolves: rhbz#2481876 - Security fix for CVE-2026-1933 - Security fix for CVE-2026-4408 - Security fix for CVE-2026-3238

[ 1 ] Bug #2481447 - CVE-2026-4480 samba: Samba: Remote Code Execution in printing subsystem via unescaped job description [fedora-all] [ 2 ] Bug #2481468 - samba-4.24.3 is available [ 3 ] Bug #2481857 - CVE-2026-3012 samba: group policy certificate enrollment uses http:// without validation [fedora-all] [ 4 ] Bug #2481875 - CVE-2026-2340 samba: vfs_worm does not block directory modification [fedora-all] [ 5 ] Bug #2481876 - CVE-2026-1933 samba: Missing access check on reparse point operations [fedora-all]

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-7567819345' at the command line. For more information, refer to the dnf documentation available at

Get the latest Linux and open source security news straight to your inbox.