Skip to content
Critical Samba Security Update for Fedora 44 Addresses Multiple CVEs

Critical Samba Security Update for Fedora 44 Addresses Multiple CVEs

First seen 2 Jun 2026, 05:52 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster June 3, 2026 at 05:45 UTC
  • Fedora 44 users must update Samba to version 4.24.3 to patch critical vulnerabilities.
  • CVE-2026-4480 allows remote code execution through an unescaped job description in the printing subsystem.
  • Multiple CVEs were addressed in this update, highlighting significant security risks in Samba.

On May 28, 2026, Fedora released an update to Samba 4.24.3, addressing several critical vulnerabilities including CVE-2026-4480, which allows remote code execution via the printing subsystem. Other vulnerabilities fixed include CVE-2026-2340, CVE-2026-3012, CVE-2026-1933, CVE-2026-4408, and CVE-2026-3238, affecting various functionalities of Samba. The vulnerabilities were published between May 26 and May 28, 2026, with the most severe allowing attackers to execute arbitrary code. Users of Fedora 44 and FreeIPA are advised to update their systems immediately to mitigate these risks. The vulnerabilities were confirmed by multiple bug reports and are considered serious threats to system security. The update can be installed using the 'dnf' update program, with specific commands provided for users.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 99d ago How this analysis works

Timeline

2026-05-26
CVE-2026-4480 published
CVE-2026-4480 disclosed, allowing remote code execution in Samba's printing subsystem.
Linuxsecurity
2026-05-27
CVE-2026-3012 and CVE-2026-1933 published
CVE-2026-3012 and CVE-2026-1933 published, affecting Samba's group policy and access checks.
Linuxsecurity
2026-05-27
CVE-2026-2340 published
CVE-2026-2340 published, revealing a flaw in Samba's vfs_worm that does not block directory modifications.
Linuxsecurity
2026-05-28
CVE-2026-4408 published
CVE-2026-4408 published, addressing a vulnerability in Samba's handling of access checks.
Linuxsecurity
2026-05-28
Samba 4.24.3 released
Fedora released Samba 4.24.3 to address multiple critical vulnerabilities, urging users to update.
Linuxsecurity

More articles in this cluster (7)

Following this threat?

Track Fedora and CVE-2026-1933 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed