{"id":181775,"date":"2026-05-28T02:48:09","date_gmt":"2026-05-28T00:48:09","guid":{"rendered":"https:\/\/prohoster.info\/blog\/novosti-interneta\/uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah"},"modified":"2026-05-28T02:48:09","modified_gmt":"2026-05-28T00:48:09","slug":"uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah","status":"publish","type":"post","link":"https:\/\/prohoster.info\/it\/blog\/news\/uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah","title":{"rendered":"Vulnerabilit\u00e0 in Samba che consentono l'esecuzione remota di codice in configurazioni rare","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Sono stati rilasciati aggiornamenti correttivi per il pacchetto Samba 4.24.3, 4.23.8 e 4.22.10, che forniscono un'implementazione aperta dei protocolli SMB e Active Directory. Nelle nuove versioni sono state corrette 6 vulnerabilit\u00e0, di cui due consentono a un attaccante remoto non autenticato di eseguire il proprio codice sul server:<\/p>\n<ul>\n<li class=\"l\"> CVE-2026-4408 \u2014 vulnerabilit\u00e0 nell'implementazione del server SAMR (Security Account Manager) su DCE\/RPC, utilizzato per gestire le credenziali e il database con utenti e gruppi. Il problema coinvolge i controller di dominio <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/it\/server\/\" title=\"servers\" data-wpil-keyword-link=\"linked\">servers<\/a> e i controller di dominio classici (non Active Directory), che avviano il processo samba-dcerpcd come servizio di sistema (di default non avviato) e utilizzano lo script di verifica della password definito in smb.conf tramite l'impostazione \u00abcheck password script\u00bb con l'uso del carattere jolly \u00ab%u\u00bb nel comando di avvio (le configurazioni senza il carattere jolly \u00ab%u\u00bb non sono vulnerabili al problema).\n<p>La vulnerabilit\u00e0 \u00e8 causata dal fatto che i servizi RPC SamValidatePasswordChange e SamValidatePasswordReset trasmettono login e password allo script definito tramite l'impostazione \u00abcheck password script\u00bb, senza eseguire l'escape dei caratteri speciali durante la sostituzione del nome utente tramite \u00ab%u\u00bb. La vulnerabilit\u00e0 consente di eseguire comandi shell arbitrari specificando un nome utente formattato appositamente. <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/it\/server\/dts-dronten\/\" title=\"server\" data-wpil-keyword-link=\"linked\">server<\/a> Come soluzione di sicurezza alternativa, si suggerisce di passare il nome utente allo script non tramite la sostituzione \u00ab%u\u00bb, ma tramite la variabile d'ambiente SAMBA_CPS_ACCOUNT_NAME.<\/p>\n<li class=\"l\"> CVE-2026-4480 \u2014 vulnerabilit\u00e0 nel server di stampa, che utilizza l'impostazione \u00abprint command\u00bb con il carattere jolly \u00ab%J\u00bb. Il problema \u00e8 causato dal fatto che la descrizione del lavoro di stampa fornita dall'utente viene trasmessa tramite la sostituzione \u00ab%J\u00bb senza il dovuto escaping dei caratteri speciali, consentendo di eseguire codice remoto durante l'invio di un lavoro di stampa, anche in modalit\u00e0 guest accessibile di default. Come soluzione di sicurezza alternativa, \u00e8 possibile rimuovere la sostituzione<br \/>\n\u00ab%J\u00bb dall'impostazione \u00abprint command\u00bb in smb.conf.<\/p>\n<\/ul>\n<p>Inoltre, nelle nuove versioni sono state risolte ulteriori vulnerabilit\u00e0 che permettono di bypassare il controllo dei diritti di accesso all'attributo xattr \u00abreparse point\u00bb, riscrivere nuovamente un file utilizzando il modulo vfs WORM (Write-Once, Read Many), impostare un certificato tramite HTTP senza verifica e causare crash. <a class=\"wpil_keyword_link\" href=\"https:\/\/prohoster.info\/it\/server\/dts-los-angeles\/\" title=\"server\" data-wpil-keyword-link=\"linked\">server<\/a> AD DC WINS tramite l'invio di un pacchetto UDP appositamente formattato.<br \/>\n<br \/>Fonte: <a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=65545\">opennet.ru<\/a> <\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0440\u0435\u043b\u0438\u0437\u044b \u043f\u0430\u043a\u0435\u0442\u0430 Samba 4.24.3, 4.23.8 \u0438 4.22.10, \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u044e\u0449\u0435\u0433\u043e \u043e\u0442\u043a\u0440\u044b\u0442\u0443\u044e \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u044e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u043e\u0432 SMB \u0438 Active Directory. \u0412 \u043d\u043e\u0432\u044b\u0445 \u0432\u0435\u0440\u0441\u0438\u044f\u0445 \u0443\u0441\u0442\u0440\u0430\u043d\u0435\u043d\u043e 6 \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0435\u0439, \u0438\u0437 \u043a\u043e\u0442\u043e\u0440\u044b\u0445 \u0434\u0432\u0435 \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u044e\u0442 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u043c\u0443 \u043d\u0435\u0430\u0443\u0442\u0435\u043d\u0442\u0438\u0444\u0438\u0446\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u043e\u043c\u0443 \u0430\u0442\u0430\u043a\u0443\u044e\u0449\u0435\u043c\u0443 \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u0441\u0432\u043e\u0439 \u043a\u043e\u0434 \u043d\u0430 \u0441\u0435\u0440\u0432\u0435\u0440\u0435: CVE-2026-4408 &#8212; \u0443\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u044c \u0432 \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u0438 \u0441\u0435\u0440\u0432\u0435\u0440\u0430 SAMR (Security Account Manager) \u043f\u043e\u0432\u0435\u0440\u0445 DCE\/RPC, \u043f\u0440\u0438\u043c\u0435\u043d\u044f\u0435\u043c\u043e\u0433\u043e \u0434\u043b\u044f \u0443\u043f\u0440\u0430\u0432\u043b\u0435\u043d\u0438\u044f \u0443\u0447\u0451\u0442\u043d\u044b\u043c\u0438 \u0434\u0430\u043d\u043d\u044b\u043c\u0438 \u0438 \u0411\u0414 c [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":8,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[702],"tags":[],"class_list":["post-181775","post","type-post","status-publish","format-standard","hentry","category-news"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0440\u0435\u043b\u0438\u0437\u044b \u043f\u0430\u043a\u0435\u0442\u0430 Samba 4.24.3, 4.23.8 \u0438 4.22.10, \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u044e\u0449\u0435\u0433\u043e \u043e\u0442\u043a\u0440\u044b\u0442\u0443\u044e \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u044e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u043e\u0432 SMB \u0438 Active Directory.\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Erik Peterson\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/it\/blog\/news\/uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"it_IT\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0432 Samba, \u0434\u043e\u043f\u0443\u0441\u043a\u0430\u044e\u0449\u0438\u0435 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u043a\u043e\u0434\u0430 \u0432 \u0440\u0435\u0434\u043a\u0438\u0445 \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u044f\u0445 | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0440\u0435\u043b\u0438\u0437\u044b \u043f\u0430\u043a\u0435\u0442\u0430 Samba 4.24.3, 4.23.8 \u0438 4.22.10, \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u044e\u0449\u0435\u0433\u043e \u043e\u0442\u043a\u0440\u044b\u0442\u0443\u044e \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u044e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u043e\u0432 SMB \u0438 Active Directory.\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/it\/blog\/news\/uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-05-28T00:48:09+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-05-28T00:48:09+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Vulnerabilit\u00e0 in Samba che consentono l'esecuzione remota di codice in configurazioni rare | ProHoster","description":"Rilasci correttivi per i pacchetti Samba 4.24.3, 4.23.8 e 4.22.10, che forniscono un'implementazione open source dei protocolli SMB e Active Directory.","canonical_url":"https:\/\/prohoster.info\/it\/blog\/news\/uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"it_IT","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u0423\u044f\u0437\u0432\u0438\u043c\u043e\u0441\u0442\u0438 \u0432 Samba, \u0434\u043e\u043f\u0443\u0441\u043a\u0430\u044e\u0449\u0438\u0435 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0435 \u0432\u044b\u043f\u043e\u043b\u043d\u0435\u043d\u0438\u0435 \u043a\u043e\u0434\u0430 \u0432 \u0440\u0435\u0434\u043a\u0438\u0445 \u043a\u043e\u043d\u0444\u0438\u0433\u0443\u0440\u0430\u0446\u0438\u044f\u0445 | ProHoster","og:description":"\u041f\u0440\u0435\u0434\u0441\u0442\u0430\u0432\u043b\u0435\u043d\u044b \u043a\u043e\u0440\u0440\u0435\u043a\u0442\u0438\u0440\u0443\u044e\u0449\u0438\u0435 \u0440\u0435\u043b\u0438\u0437\u044b \u043f\u0430\u043a\u0435\u0442\u0430 Samba 4.24.3, 4.23.8 \u0438 4.22.10, \u043f\u0440\u0435\u0434\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u044e\u0449\u0435\u0433\u043e \u043e\u0442\u043a\u0440\u044b\u0442\u0443\u044e \u0440\u0435\u0430\u043b\u0438\u0437\u0430\u0446\u0438\u044e \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b\u043e\u0432 SMB \u0438 Active Directory.","og:url":"https:\/\/prohoster.info\/it\/blog\/news\/uyazvimosti-v-samba-dopuskayushhie-udalyonnoe-vypolnenie-koda-v-redkih-konfiguracziyah","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2026-05-28T00:48:09+00:00","article:modified_time":"2026-05-28T00:48:09+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":[],"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/181775","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/users\/8"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/comments?post=181775"}],"version-history":[{"count":1,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/181775\/revisions"}],"predecessor-version":[{"id":182098,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/posts\/181775\/revisions\/182098"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/media?parent=181775"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/categories?post=181775"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/it\/wp-json\/wp\/v2\/tags?post=181775"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}