Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w497-wqwx-v847

Опубликовано: 15 окт. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read residual memory content that may include sensitive data, resulting in an information disclosure vulnerability.

A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read residual memory content that may include sensitive data, resulting in an information disclosure vulnerability.

EPSS

Процентиль: 23%
0.00077
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-908

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 2 месяцев назад

A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read residual memory content that may include sensitive data, resulting in an information disclosure vulnerability.

CVSS3: 4.3
nvd
около 2 месяцев назад

A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read residual memory content that may include sensitive data, resulting in an information disclosure vulnerability.

CVSS3: 4.3
debian
около 2 месяцев назад

A flaw was found in Samba, in the vfs_streams_xattr module, where unin ...

suse-cvrf
12 дней назад

Security update for samba

suse-cvrf
около 1 месяца назад

Security update for samba

EPSS

Процентиль: 23%
0.00077
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-908