<img height="1" width="1" style="display: none" alt="" src="https://px.ads.linkedin.com/collect/?pid=1098858&amp;fmt=gif">

Critical Samba Flaw Lets Attackers Take Over Systems Without Logging In

Critical Samba vulnerability CVE-2026-4480 allows remote code execution on Unix systems. Patch now or remove %J from smb.conf for safety.
Content Team

A maximum-severity vulnerability in Samba's printing subsystem — CVE-2026-4480, CVSS 10.0 — lets unauthenticated attackers run arbitrary commands on affected Linux and Unix systems. The flaw lives in the %J substitution parameter used in print commands, which passes client-controlled input directly into a shell without escaping special characters. Since many Samba setups allow guest print job submissions by default, no credentials are needed to exploit it.

Patches are out: Samba versions 4.22.10, 4.23.8, and 4.24.3 fix the issue. Systems using printing = cups or iprint aren't affected. If patching isn't immediate, removing %J from your smb.conf print command is the safest workaround.

Source: Cybersecurity News

Share this article
Share on facebook Share on linkedin Share on twitter Share on email
blog_book_a_demo_cta_3x
Have questions about protecting your software?
Our escrow experts are standing by to help.
Book a free demo