Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-32746

Опубликовано: 25 авг. 2022
Источник: debian
EPSS Низкий

Описание

A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values freed by a preceding database module, resulting in a use-after-free issue. This issue is only possible when modifying certain privileged attributes, such as userAccountControl.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sambafixed2:4.16.4+dfsg-1package
sambaignoredbusterpackage

Примечания

  • https://www.samba.org/samba/security/CVE-2022-32746.html

EPSS

Процентиль: 36%
0.00143
Низкий

Связанные уязвимости

CVSS3: 5.4
ubuntu
почти 3 года назад

A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values freed by a preceding database module, resulting in a use-after-free issue. This issue is only possible when modifying certain privileged attributes, such as userAccountControl.

CVSS3: 5.4
redhat
почти 3 года назад

A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values freed by a preceding database module, resulting in a use-after-free issue. This issue is only possible when modifying certain privileged attributes, such as userAccountControl.

CVSS3: 5.4
nvd
почти 3 года назад

A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values freed by a preceding database module, resulting in a use-after-free issue. This issue is only possible when modifying certain privileged attributes, such as userAccountControl.

CVSS3: 5.4
msrc
8 месяцев назад

Описание отсутствует

rocky
больше 2 лет назад

Moderate: libldb security, bug fix, and enhancement update

EPSS

Процентиль: 36%
0.00143
Низкий