FlawAtlas
Search the atlas
CVE-2026-4480 Not scored

Samba: samba: remote code execution in printing subsystem via unescaped job description

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

Exploit probability 12.8%
Published May 26, 2026
Required by Not available
Last source change July 16, 2026

02 / AFFECTED SOFTWARE

Affected packages

Unknown Unknown

03 / CONNECTIONS

Connected vulnerabilities

related OPENSUSE-SU-2026:10884-1
related SUSE-SU-2026:2071-1
related SUSE-SU-2026:2072-1
related SUSE-SU-2026:2073-1
related SUSE-SU-2026:2074-1
related SUSE-SU-2026:2076-1
related SUSE-SU-2026:2108-1

04 / EVIDENCE

Source records

Open Source Vulnerabilities CVE-2026-4480

A flaw was found in the Samba printing subsystem. Samba passes the client-controlled job description string to the command configured with the "print command" setting via the "%J" substitution character without escaping shell meta characters. A remote attacker could exploit this vulnerability by sending a specially crafted print job description that contains unescaped shell characters. This could lead to remote code execution on the affected system.

View original source

05 / REFERENCES

Further evidence