Bug 2447317 (CVE-2026-1933)

Summary: CVE-2026-1933 samba: Missing access check on reparse point operations
Product: [Other] Security Response Reporter: OSIDB Bzimport <bzimport>
Component: vulnerabilityAssignee: Product Security <prodsec-ir-bot>
Status: NEW --- QA Contact:
Severity: high Docs Contact:
Priority: high    
Version: unspecifiedCC: akhatavk, aos-team-art-private, asdas, dpaolell, jdelft, jupierce, lgarciaa, mbiarnes, ppalepu, ppostler, prdhamdh, rhel-process-autobot, security-response-team, sghai, sidsharm, suppawar, villapla, vlaad, watson-tool-maintainers
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: Doc Type: ---
Doc Text:
A flaw was found in Samba’s handling of NTFS-style reparse points on shares configured with read only = yes. Due to missing SMB-layer access checks, authenticated users with underlying filesystem write permissions may create or delete reparse point metadata through SMB operations even on read-only exports. This could allow modification of SMB-visible file behavior, including converting files into symbolic links or other reparse point types.
Story Points: ---
Clone Of: Environment:
Last Closed: Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 2481876    
Bug Blocks:    

Description OSIDB Bzimport 2026-03-13 13:05:10 UTC
Samba: Missing access check on reparse point operations

Comment 2 TEJ RATHI 2026-05-27 12:15:15 UTC
Embargo Lifted. The CVE is now public.

https://www.samba.org/samba/security/CVE-2026-1933.html
https://bugzilla.samba.org/show_bug.cgi?id=15992

Comment 3 errata-xmlrpc 2026-06-03 20:58:02 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10

Via RHSA-2026:22963 https://access.redhat.com/errata/RHSA-2026:22963

Comment 4 errata-xmlrpc 2026-06-10 11:14:46 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9

Via RHSA-2026:25049 https://access.redhat.com/errata/RHSA-2026:25049

Comment 5 errata-xmlrpc 2026-06-15 14:11:13 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.6 Extended Update Support

Via RHSA-2026:25979 https://access.redhat.com/errata/RHSA-2026:25979

Comment 6 errata-xmlrpc 2026-06-23 00:54:12 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support
  Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On

Via RHSA-2026:28057 https://access.redhat.com/errata/RHSA-2026:28057

Comment 7 errata-xmlrpc 2026-06-23 00:54:26 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions
  Red Hat Enterprise Linux 8.8 Telecommunications Update Service

Via RHSA-2026:28056 https://access.redhat.com/errata/RHSA-2026:28056

Comment 8 errata-xmlrpc 2026-06-23 00:54:44 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 10.0 Extended Update Support

Via RHSA-2026:28055 https://access.redhat.com/errata/RHSA-2026:28055

Comment 9 errata-xmlrpc 2026-06-23 00:57:51 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions

Via RHSA-2026:28054 https://access.redhat.com/errata/RHSA-2026:28054

Comment 10 errata-xmlrpc 2026-06-23 00:58:09 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions

Via RHSA-2026:28053 https://access.redhat.com/errata/RHSA-2026:28053

Comment 11 errata-xmlrpc 2026-07-02 18:30:03 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.19

Via RHSA-2026:29863 https://access.redhat.com/errata/RHSA-2026:29863

Comment 12 Christopher Lusk 2026-08-03 14:31:45 UTC
PSIRTSUPT-20948: TAM flagged that OCP 4.20 was missing from the CVE page. Investigation confirmed that active streams openshift-4.20, openshift-4.21, and openshift-4.22 had no affects filed, despite shipping the same vulnerable samba RPMs via RHCOS (RHEL 9.6 base). Added AFFECTED/DELEGATED affects for all three streams to match the existing pattern (openshift-4.12.z through openshift-4.19).

Comment 13 errata-xmlrpc 2026-08-18 11:57:05 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.21

Via RHSA-2026:54599 https://access.redhat.com/errata/RHSA-2026:54599

Comment 14 errata-xmlrpc 2026-08-18 12:07:21 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.20

Via RHSA-2026:54581 https://access.redhat.com/errata/RHSA-2026:54581

Comment 15 errata-xmlrpc 2026-08-18 12:25:16 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.22

Via RHSA-2026:54769 https://access.redhat.com/errata/RHSA-2026:54769

Comment 16 errata-xmlrpc 2026-08-26 15:55:08 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.18

Via RHSA-2026:57483 https://access.redhat.com/errata/RHSA-2026:57483

Comment 17 errata-xmlrpc 2026-08-31 02:02:12 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.15

Via RHSA-2026:56911 https://access.redhat.com/errata/RHSA-2026:56911

Comment 18 errata-xmlrpc 2026-08-31 02:03:17 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.14

Via RHSA-2026:56786 https://access.redhat.com/errata/RHSA-2026:56786

Comment 19 errata-xmlrpc 2026-08-31 02:03:53 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.16

Via RHSA-2026:56853 https://access.redhat.com/errata/RHSA-2026:56853

Comment 20 errata-xmlrpc 2026-09-03 08:58:27 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.17

Via RHSA-2026:60019 https://access.redhat.com/errata/RHSA-2026:60019

Comment 21 errata-xmlrpc 2026-09-03 12:01:55 UTC
This issue has been addressed in the following products:

  Red Hat OpenShift Container Platform 4.12

Via RHSA-2026:59831 https://access.redhat.com/errata/RHSA-2026:59831