Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-3238

Опубликовано: 26 мая 2026
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protocol handlers for certain request types did not properly validate incoming packets, allowing an unauthenticated remote attacker to trigger a NULL pointer dereference and crash the WINS service using specially crafted UDP packets.

Отчет

This vulnerability affects the WINS server functionality in Samba Active Directory Domain Controller deployments. A remote unauthenticated attacker may send specially crafted WINS packets that cause the WINS service to crash, resulting in denial of service. Although the service may automatically restart, the attack is trivial to repeat and can effectively make the WINS service continuously unavailable. The vulnerable WINS functionality is not enabled by default and requires explicit activation using: "wins support = yes" setting in the [global] section of the smb.conf file.

The Samba package as shipped with Red Hat Enterprise Linux and other products is not affected by this issue as Red Hat doesn't provide the AD Domain Controller capability with it.

Меры по смягчению последствий

As a workaround, deployments that do not strictly require Samba-provided WINS functionality should disable WINS support by removing: wins support = yes from the Samba configuration.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10sambaNot affected
Red Hat Enterprise Linux 6sambaNot affected
Red Hat Enterprise Linux 6samba4Not affected
Red Hat Enterprise Linux 7sambaNot affected
Red Hat Enterprise Linux 8sambaNot affected
Red Hat Enterprise Linux 9sambaNot affected
Red Hat OpenShift Container Platform 4rhcosNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=2486176samba: Denial of service against AD DC WINS server

EPSS

Процентиль: 84%
0.02669
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
2 месяца назад

A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protocol handlers for certain request types did not properly validate incoming packets, allowing an unauthenticated remote attacker to trigger a NULL pointer dereference and crash the WINS service using specially crafted UDP packets.

CVSS3: 7.5
nvd
2 месяца назад

A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protocol handlers for certain request types did not properly validate incoming packets, allowing an unauthenticated remote attacker to trigger a NULL pointer dereference and crash the WINS service using specially crafted UDP packets.

CVSS3: 7.5
debian
2 месяца назад

A flaw was found in Samba\u2019s WINS server component when running as ...

CVSS3: 7.5
github
2 месяца назад

A flaw was found in Samba’s WINS server component when running as an Active Directory Domain Controller. The WINS protocol handlers for certain request types did not properly validate incoming packets, allowing an unauthenticated remote attacker to trigger a NULL pointer dereference and crash the WINS service using specially crafted UDP packets.

CVSS3: 7.5
fstec
2 месяца назад

Уязвимость WINS-сервера программного обеспечения Samba, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 84%
0.02669
Низкий

7.5 High

CVSS3