Количество 17
Количество 17

BDU:2023-03963
Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

ROS-20230920-02
Множественные уязвимости samba

ROS-20230920-01
Множественные уязвимости samba

CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insuffic ...

SUSE-SU-2023:3358-1
Security update for samba

SUSE-SU-2023:3017-1
Security update for samba

SUSE-SU-2023:2887-1
Security update for samba
GHSA-mfwc-hx97-869v
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

SUSE-SU-2023:3060-1
Security update for samba

SUSE-SU-2023:2930-1
Security update for samba

SUSE-SU-2023:2888-1
Security update for samba
ELSA-2023-7139
ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)
ELSA-2023-6667
ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)

SUSE-SU-2023:2929-1
Security update for samba
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2023-03963 Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | около 2 лет назад |
![]() | ROS-20230920-02 Множественные уязвимости samba | CVSS3: 7.5 | почти 2 года назад | |
![]() | ROS-20230920-01 Множественные уязвимости samba | CVSS3: 7.5 | почти 2 года назад | |
![]() | CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад |
![]() | CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад |
![]() | CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад |
CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insuffic ... | CVSS3: 5.9 | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:3358-1 Security update for samba | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:3017-1 Security update for samba | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:2887-1 Security update for samba | 1% Низкий | около 2 лет назад | |
GHSA-mfwc-hx97-869v An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:3060-1 Security update for samba | около 2 лет назад | ||
![]() | SUSE-SU-2023:2930-1 Security update for samba | около 2 лет назад | ||
![]() | SUSE-SU-2023:2888-1 Security update for samba | около 2 лет назад | ||
ELSA-2023-7139 ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE) | почти 2 года назад | |||
ELSA-2023-6667 ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE) | почти 2 года назад | |||
![]() | SUSE-SU-2023:2929-1 Security update for samba | около 2 лет назад |
Уязвимостей на страницу