As per upstream samba advisory:
All versions of Samba from 3.5.0 onwards are vulnerable to a remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share, and then cause the server to load and execute it.
External References:
https://www.samba.org/samba/security/CVE-2017-7494.html
Acknowledgements:
Name: the Samba project Upstream: steelo