Classnotes | UNIX03 | RecentChanges | Preferences There are several versions of Samba. If you have a version older than 2.0.10, you should upgrade because there are several remote exploitable bugs in versions prior to that release. Version 2.2.x has been pretty clean, and while version 3.0 is very new, it has proven to be very secure "out of the box".
To discover the version of Samba on your machine, you can call the SMB daemon binary with the "-V" option:
# smbd -V
Something like the following will be returned:
Version 2.2.4
or
Version 3.0.0-alpha17
Previous to 2.0.10, and also in 2.2.0a, there was a macro expansion bug that could be exploited remotely to do damage to your filesystem. The most recent versions of Samba have this bug squashed, but some older systems and even some UNIX flavours still have the older versions installed.