Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-32745

Опубликовано: 27 июл. 2022
Источник: redhat
CVSS3: 5.4
EPSS Низкий

Описание

A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the request, usually resulting in a segmentation fault.

Отчет

Red Hat Enterprise Linux is not affected by this flaw as Samba AD (Active Directory) doesn't get built in RHEL.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6sambaNot affected
Red Hat Enterprise Linux 6samba4Not affected
Red Hat Enterprise Linux 7sambaNot affected
Red Hat Enterprise Linux 8sambaNot affected
Red Hat Enterprise Linux 9sambaNot affected
Red Hat Storage 3sambaNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
Дефект:
CWE-457
https://bugzilla.redhat.com/show_bug.cgi?id=2108211samba: AD users can crash the server process with an LDAP add or modify request

EPSS

Процентиль: 54%
0.00319
Низкий

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 8.1
ubuntu
почти 3 года назад

A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the request, usually resulting in a segmentation fault.

CVSS3: 8.1
nvd
почти 3 года назад

A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the request, usually resulting in a segmentation fault.

CVSS3: 8.1
msrc
8 месяцев назад

Описание отсутствует

CVSS3: 8.1
debian
почти 3 года назад

A flaw was found in Samba. Samba AD users can cause the server to acce ...

CVSS3: 8.1
github
почти 3 года назад

A flaw was found in Samba. Samba AD users can cause the server to access uninitialized data with an LDAP add or modify the request, usually resulting in a segmentation fault.

EPSS

Процентиль: 54%
0.00319
Низкий

5.4 Medium

CVSS3