ALAS2-2025-2979


Amazon Linux 2 Security Advisory: ALAS2-2025-2979
Advisory Released Date: 2025-09-04
Advisory Updated Date: 2025-09-04
Severity: Low

Issue Overview:

All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed. (CVE-2021-43566)


Affected Packages:

samba


Note:

This advisory is applicable to Amazon Linux 2 (AL2) Core repository. Visit this FAQ section for the difference between AL2 Core and AL2 Extras advisories.


Issue Correction:
Run yum update samba or yum update --advisory ALAS2-2025-2979 to update your system.

New Packages:
aarch64:
    samba-4.10.16-24.amzn2.0.5.aarch64
    samba-client-4.10.16-24.amzn2.0.5.aarch64
    samba-client-libs-4.10.16-24.amzn2.0.5.aarch64
    samba-common-libs-4.10.16-24.amzn2.0.5.aarch64
    samba-common-tools-4.10.16-24.amzn2.0.5.aarch64
    samba-dc-4.10.16-24.amzn2.0.5.aarch64
    samba-dc-libs-4.10.16-24.amzn2.0.5.aarch64
    samba-devel-4.10.16-24.amzn2.0.5.aarch64
    samba-krb5-printing-4.10.16-24.amzn2.0.5.aarch64
    samba-libs-4.10.16-24.amzn2.0.5.aarch64
    libsmbclient-4.10.16-24.amzn2.0.5.aarch64
    libsmbclient-devel-4.10.16-24.amzn2.0.5.aarch64
    libwbclient-4.10.16-24.amzn2.0.5.aarch64
    libwbclient-devel-4.10.16-24.amzn2.0.5.aarch64
    samba-python-4.10.16-24.amzn2.0.5.aarch64
    samba-python-test-4.10.16-24.amzn2.0.5.aarch64
    samba-test-4.10.16-24.amzn2.0.5.aarch64
    samba-test-libs-4.10.16-24.amzn2.0.5.aarch64
    samba-winbind-4.10.16-24.amzn2.0.5.aarch64
    samba-winbind-clients-4.10.16-24.amzn2.0.5.aarch64
    samba-winbind-krb5-locator-4.10.16-24.amzn2.0.5.aarch64
    samba-winbind-modules-4.10.16-24.amzn2.0.5.aarch64
    ctdb-4.10.16-24.amzn2.0.5.aarch64
    ctdb-tests-4.10.16-24.amzn2.0.5.aarch64
    samba-debuginfo-4.10.16-24.amzn2.0.5.aarch64

i686:
    samba-4.10.16-24.amzn2.0.5.i686
    samba-client-4.10.16-24.amzn2.0.5.i686
    samba-client-libs-4.10.16-24.amzn2.0.5.i686
    samba-common-libs-4.10.16-24.amzn2.0.5.i686
    samba-common-tools-4.10.16-24.amzn2.0.5.i686
    samba-dc-4.10.16-24.amzn2.0.5.i686
    samba-dc-libs-4.10.16-24.amzn2.0.5.i686
    samba-devel-4.10.16-24.amzn2.0.5.i686
    samba-krb5-printing-4.10.16-24.amzn2.0.5.i686
    samba-libs-4.10.16-24.amzn2.0.5.i686
    libsmbclient-4.10.16-24.amzn2.0.5.i686
    libsmbclient-devel-4.10.16-24.amzn2.0.5.i686
    libwbclient-4.10.16-24.amzn2.0.5.i686
    libwbclient-devel-4.10.16-24.amzn2.0.5.i686
    samba-python-4.10.16-24.amzn2.0.5.i686
    samba-python-test-4.10.16-24.amzn2.0.5.i686
    samba-test-4.10.16-24.amzn2.0.5.i686
    samba-test-libs-4.10.16-24.amzn2.0.5.i686
    samba-winbind-4.10.16-24.amzn2.0.5.i686
    samba-winbind-clients-4.10.16-24.amzn2.0.5.i686
    samba-winbind-krb5-locator-4.10.16-24.amzn2.0.5.i686
    samba-winbind-modules-4.10.16-24.amzn2.0.5.i686
    ctdb-4.10.16-24.amzn2.0.5.i686
    ctdb-tests-4.10.16-24.amzn2.0.5.i686
    samba-debuginfo-4.10.16-24.amzn2.0.5.i686

noarch:
    samba-common-4.10.16-24.amzn2.0.5.noarch
    samba-pidl-4.10.16-24.amzn2.0.5.noarch

src:
    samba-4.10.16-24.amzn2.0.5.src

x86_64:
    samba-4.10.16-24.amzn2.0.5.x86_64
    samba-client-4.10.16-24.amzn2.0.5.x86_64
    samba-client-libs-4.10.16-24.amzn2.0.5.x86_64
    samba-common-libs-4.10.16-24.amzn2.0.5.x86_64
    samba-common-tools-4.10.16-24.amzn2.0.5.x86_64
    samba-dc-4.10.16-24.amzn2.0.5.x86_64
    samba-dc-libs-4.10.16-24.amzn2.0.5.x86_64
    samba-devel-4.10.16-24.amzn2.0.5.x86_64
    samba-vfs-glusterfs-4.10.16-24.amzn2.0.5.x86_64
    samba-krb5-printing-4.10.16-24.amzn2.0.5.x86_64
    samba-libs-4.10.16-24.amzn2.0.5.x86_64
    libsmbclient-4.10.16-24.amzn2.0.5.x86_64
    libsmbclient-devel-4.10.16-24.amzn2.0.5.x86_64
    libwbclient-4.10.16-24.amzn2.0.5.x86_64
    libwbclient-devel-4.10.16-24.amzn2.0.5.x86_64
    samba-python-4.10.16-24.amzn2.0.5.x86_64
    samba-python-test-4.10.16-24.amzn2.0.5.x86_64
    samba-test-4.10.16-24.amzn2.0.5.x86_64
    samba-test-libs-4.10.16-24.amzn2.0.5.x86_64
    samba-winbind-4.10.16-24.amzn2.0.5.x86_64
    samba-winbind-clients-4.10.16-24.amzn2.0.5.x86_64
    samba-winbind-krb5-locator-4.10.16-24.amzn2.0.5.x86_64
    samba-winbind-modules-4.10.16-24.amzn2.0.5.x86_64
    ctdb-4.10.16-24.amzn2.0.5.x86_64
    ctdb-tests-4.10.16-24.amzn2.0.5.x86_64
    samba-debuginfo-4.10.16-24.amzn2.0.5.x86_64