Количество 17
Количество 17
BDU:2023-03963
Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20230920-02
Множественные уязвимости samba
ROS-20230920-01
Множественные уязвимости samba
CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insuffic ...
SUSE-SU-2023:3358-1
Security update for samba
SUSE-SU-2023:3017-1
Security update for samba
SUSE-SU-2023:2887-1
Security update for samba
GHSA-mfwc-hx97-869v
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
SUSE-SU-2023:3060-1
Security update for samba
SUSE-SU-2023:2930-1
Security update for samba
SUSE-SU-2023:2888-1
Security update for samba
ELSA-2023-7139
ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)
ELSA-2023-6667
ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)
SUSE-SU-2023:2929-1
Security update for samba
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2023-03963 Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | больше 2 лет назад | |
ROS-20230920-02 Множественные уязвимости samba | CVSS3: 7.5 | около 2 лет назад | ||
ROS-20230920-01 Множественные уязвимости samba | CVSS3: 7.5 | около 2 лет назад | ||
CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | больше 2 лет назад | |
CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | больше 2 лет назад | |
CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | больше 2 лет назад | |
CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insuffic ... | CVSS3: 5.9 | 1% Низкий | больше 2 лет назад | |
SUSE-SU-2023:3358-1 Security update for samba | 1% Низкий | больше 2 лет назад | ||
SUSE-SU-2023:3017-1 Security update for samba | 1% Низкий | больше 2 лет назад | ||
SUSE-SU-2023:2887-1 Security update for samba | 1% Низкий | больше 2 лет назад | ||
GHSA-mfwc-hx97-869v An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | больше 2 лет назад | |
SUSE-SU-2023:3060-1 Security update for samba | больше 2 лет назад | |||
SUSE-SU-2023:2930-1 Security update for samba | больше 2 лет назад | |||
SUSE-SU-2023:2888-1 Security update for samba | больше 2 лет назад | |||
ELSA-2023-7139 ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE) | около 2 лет назад | |||
ELSA-2023-6667 ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE) | около 2 лет назад | |||
SUSE-SU-2023:2929-1 Security update for samba | больше 2 лет назад |
Уязвимостей на страницу