Amazon Linux 2 Security Advisory: ALAS2-2025-2979
Advisory Released Date: 2025-09-04
Advisory Updated Date: 2025-09-04
All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed. (CVE-2021-43566)
Affected Packages:
samba
Note:
This advisory is applicable to Amazon Linux 2 (AL2) Core repository. Visit this FAQ section for the difference between AL2 Core and AL2 Extras advisories.
Issue Correction:
Run yum update samba or yum update --advisory ALAS2-2025-2979 to update your system.
aarch64:
samba-4.10.16-24.amzn2.0.5.aarch64
samba-client-4.10.16-24.amzn2.0.5.aarch64
samba-client-libs-4.10.16-24.amzn2.0.5.aarch64
samba-common-libs-4.10.16-24.amzn2.0.5.aarch64
samba-common-tools-4.10.16-24.amzn2.0.5.aarch64
samba-dc-4.10.16-24.amzn2.0.5.aarch64
samba-dc-libs-4.10.16-24.amzn2.0.5.aarch64
samba-devel-4.10.16-24.amzn2.0.5.aarch64
samba-krb5-printing-4.10.16-24.amzn2.0.5.aarch64
samba-libs-4.10.16-24.amzn2.0.5.aarch64
libsmbclient-4.10.16-24.amzn2.0.5.aarch64
libsmbclient-devel-4.10.16-24.amzn2.0.5.aarch64
libwbclient-4.10.16-24.amzn2.0.5.aarch64
libwbclient-devel-4.10.16-24.amzn2.0.5.aarch64
samba-python-4.10.16-24.amzn2.0.5.aarch64
samba-python-test-4.10.16-24.amzn2.0.5.aarch64
samba-test-4.10.16-24.amzn2.0.5.aarch64
samba-test-libs-4.10.16-24.amzn2.0.5.aarch64
samba-winbind-4.10.16-24.amzn2.0.5.aarch64
samba-winbind-clients-4.10.16-24.amzn2.0.5.aarch64
samba-winbind-krb5-locator-4.10.16-24.amzn2.0.5.aarch64
samba-winbind-modules-4.10.16-24.amzn2.0.5.aarch64
ctdb-4.10.16-24.amzn2.0.5.aarch64
ctdb-tests-4.10.16-24.amzn2.0.5.aarch64
samba-debuginfo-4.10.16-24.amzn2.0.5.aarch64
i686:
samba-4.10.16-24.amzn2.0.5.i686
samba-client-4.10.16-24.amzn2.0.5.i686
samba-client-libs-4.10.16-24.amzn2.0.5.i686
samba-common-libs-4.10.16-24.amzn2.0.5.i686
samba-common-tools-4.10.16-24.amzn2.0.5.i686
samba-dc-4.10.16-24.amzn2.0.5.i686
samba-dc-libs-4.10.16-24.amzn2.0.5.i686
samba-devel-4.10.16-24.amzn2.0.5.i686
samba-krb5-printing-4.10.16-24.amzn2.0.5.i686
samba-libs-4.10.16-24.amzn2.0.5.i686
libsmbclient-4.10.16-24.amzn2.0.5.i686
libsmbclient-devel-4.10.16-24.amzn2.0.5.i686
libwbclient-4.10.16-24.amzn2.0.5.i686
libwbclient-devel-4.10.16-24.amzn2.0.5.i686
samba-python-4.10.16-24.amzn2.0.5.i686
samba-python-test-4.10.16-24.amzn2.0.5.i686
samba-test-4.10.16-24.amzn2.0.5.i686
samba-test-libs-4.10.16-24.amzn2.0.5.i686
samba-winbind-4.10.16-24.amzn2.0.5.i686
samba-winbind-clients-4.10.16-24.amzn2.0.5.i686
samba-winbind-krb5-locator-4.10.16-24.amzn2.0.5.i686
samba-winbind-modules-4.10.16-24.amzn2.0.5.i686
ctdb-4.10.16-24.amzn2.0.5.i686
ctdb-tests-4.10.16-24.amzn2.0.5.i686
samba-debuginfo-4.10.16-24.amzn2.0.5.i686
noarch:
samba-common-4.10.16-24.amzn2.0.5.noarch
samba-pidl-4.10.16-24.amzn2.0.5.noarch
src:
samba-4.10.16-24.amzn2.0.5.src
x86_64:
samba-4.10.16-24.amzn2.0.5.x86_64
samba-client-4.10.16-24.amzn2.0.5.x86_64
samba-client-libs-4.10.16-24.amzn2.0.5.x86_64
samba-common-libs-4.10.16-24.amzn2.0.5.x86_64
samba-common-tools-4.10.16-24.amzn2.0.5.x86_64
samba-dc-4.10.16-24.amzn2.0.5.x86_64
samba-dc-libs-4.10.16-24.amzn2.0.5.x86_64
samba-devel-4.10.16-24.amzn2.0.5.x86_64
samba-vfs-glusterfs-4.10.16-24.amzn2.0.5.x86_64
samba-krb5-printing-4.10.16-24.amzn2.0.5.x86_64
samba-libs-4.10.16-24.amzn2.0.5.x86_64
libsmbclient-4.10.16-24.amzn2.0.5.x86_64
libsmbclient-devel-4.10.16-24.amzn2.0.5.x86_64
libwbclient-4.10.16-24.amzn2.0.5.x86_64
libwbclient-devel-4.10.16-24.amzn2.0.5.x86_64
samba-python-4.10.16-24.amzn2.0.5.x86_64
samba-python-test-4.10.16-24.amzn2.0.5.x86_64
samba-test-4.10.16-24.amzn2.0.5.x86_64
samba-test-libs-4.10.16-24.amzn2.0.5.x86_64
samba-winbind-4.10.16-24.amzn2.0.5.x86_64
samba-winbind-clients-4.10.16-24.amzn2.0.5.x86_64
samba-winbind-krb5-locator-4.10.16-24.amzn2.0.5.x86_64
samba-winbind-modules-4.10.16-24.amzn2.0.5.x86_64
ctdb-4.10.16-24.amzn2.0.5.x86_64
ctdb-tests-4.10.16-24.amzn2.0.5.x86_64
samba-debuginfo-4.10.16-24.amzn2.0.5.x86_64