Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2015-0240

больше 11 лет назад

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

CVSS2: 10
EPSS: Высокий
redhat логотип

CVE-2015-0240

больше 11 лет назад

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

CVSS2: 7.9
EPSS: Высокий
nvd логотип

CVE-2015-0240

больше 11 лет назад

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

CVSS2: 10
EPSS: Высокий
debian логотип

CVE-2015-0240

больше 11 лет назад

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x be ...

CVSS2: 10
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:0371-1

больше 11 лет назад

Security update for Samba

EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:0353-1

больше 11 лет назад

Security update for samba

EPSS: Высокий
github логотип

GHSA-wjcr-wjqx-g6rq

около 4 лет назад

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

EPSS: Высокий
oracle-oval логотип

ELSA-2015-0252

больше 11 лет назад

ELSA-2015-0252: samba security update (IMPORTANT)

EPSS: Высокий
oracle-oval логотип

ELSA-2015-0251

больше 11 лет назад

ELSA-2015-0251: samba security update (CRITICAL)

EPSS: Высокий
oracle-oval логотип

ELSA-2015-0250

больше 11 лет назад

ELSA-2015-0250: samba4 security update (CRITICAL)

EPSS: Высокий
oracle-oval логотип

ELSA-2015-0249

больше 11 лет назад

ELSA-2015-0249: samba3x security update (CRITICAL)

EPSS: Высокий
fstec логотип

BDU:2015-10377

больше 11 лет назад

Уязвимость функции the _netr_ServerPasswordSet пакета программ сетевого взаимодействия Samba, позволяющая нарушителю выполнить произвольный код c привилегиями администратора

CVSS3: 10
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:0386-1

больше 12 лет назад

Security update for Samba

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-0240

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

CVSS2: 10
88%
Высокий
больше 11 лет назад
redhat логотип
CVE-2015-0240

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

CVSS2: 7.9
88%
Высокий
больше 11 лет назад
nvd логотип
CVE-2015-0240

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

CVSS2: 10
88%
Высокий
больше 11 лет назад
debian логотип
CVE-2015-0240

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x be ...

CVSS2: 10
88%
Высокий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0371-1

Security update for Samba

88%
Высокий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0353-1

Security update for samba

88%
Высокий
больше 11 лет назад
github логотип
GHSA-wjcr-wjqx-g6rq

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

88%
Высокий
около 4 лет назад
oracle-oval логотип
ELSA-2015-0252

ELSA-2015-0252: samba security update (IMPORTANT)

88%
Высокий
больше 11 лет назад
oracle-oval логотип
ELSA-2015-0251

ELSA-2015-0251: samba security update (CRITICAL)

88%
Высокий
больше 11 лет назад
oracle-oval логотип
ELSA-2015-0250

ELSA-2015-0250: samba4 security update (CRITICAL)

88%
Высокий
больше 11 лет назад
oracle-oval логотип
ELSA-2015-0249

ELSA-2015-0249: samba3x security update (CRITICAL)

88%
Высокий
больше 11 лет назад
fstec логотип
BDU:2015-10377

Уязвимость функции the _netr_ServerPasswordSet пакета программ сетевого взаимодействия Samba, позволяющая нарушителю выполнить произвольный код c привилегиями администратора

CVSS3: 10
88%
Высокий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0386-1

Security update for Samba

больше 12 лет назад

Уязвимостей на страницу