Логотип exploitDog
bind:"GHSA-mfwc-hx97-869v" OR bind:"CVE-2022-2127"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-mfwc-hx97-869v" OR bind:"CVE-2022-2127"

Количество 17

Количество 17

github логотип

GHSA-mfwc-hx97-869v

больше 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
ubuntu логотип

CVE-2022-2127

больше 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2022-2127

больше 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2022-2127

больше 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2022-2127

больше 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insuffic ...

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3358-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3017-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2887-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
fstec логотип

BDU:2023-03963

больше 2 лет назад

Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3060-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2930-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2888-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
oracle-oval логотип

ELSA-2023-7139

около 2 лет назад

ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6667

около 2 лет назад

ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2929-1

больше 2 лет назад

Security update for samba

EPSS: Низкий
redos логотип

ROS-20230920-02

около 2 лет назад

Множественные уязвимости samba

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20230920-01

около 2 лет назад

Множественные уязвимости samba

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-mfwc-hx97-869v

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
больше 2 лет назад
ubuntu логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
больше 2 лет назад
debian логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insuffic ...

CVSS3: 5.9
1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3358-1

Security update for samba

1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3017-1

Security update for samba

1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2887-1

Security update for samba

1%
Низкий
больше 2 лет назад
fstec логотип
BDU:2023-03963

Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3060-1

Security update for samba

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2930-1

Security update for samba

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2888-1

Security update for samba

больше 2 лет назад
oracle-oval логотип
ELSA-2023-7139

ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2023-6667

ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2929-1

Security update for samba

больше 2 лет назад
redos логотип
ROS-20230920-02

Множественные уязвимости samba

CVSS3: 7.5
около 2 лет назад
redos логотип
ROS-20230920-01

Множественные уязвимости samba

CVSS3: 7.5
около 2 лет назад

Уязвимостей на страницу