Логотип exploitDog
bind:CVE-2022-2127
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-2127

Количество 17

Количество 17

ubuntu логотип

CVE-2022-2127

около 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2022-2127

около 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2022-2127

около 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2022-2127

около 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insuffic ...

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3358-1

около 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3017-1

около 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2887-1

около 2 лет назад

Security update for samba

EPSS: Низкий
github логотип

GHSA-mfwc-hx97-869v

около 2 лет назад

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
EPSS: Низкий
fstec логотип

BDU:2023-03963

около 2 лет назад

Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3060-1

около 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2930-1

около 2 лет назад

Security update for samba

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2888-1

около 2 лет назад

Security update for samba

EPSS: Низкий
oracle-oval логотип

ELSA-2023-7139

почти 2 года назад

ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6667

почти 2 года назад

ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2929-1

около 2 лет назад

Security update for samba

EPSS: Низкий
redos логотип

ROS-20230920-02

почти 2 года назад

Множественные уязвимости samba

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20230920-01

почти 2 года назад

Множественные уязвимости samba

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
около 2 лет назад
redhat логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
около 2 лет назад
nvd логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
около 2 лет назад
debian логотип
CVE-2022-2127

An out-of-bounds read vulnerability was found in Samba due to insuffic ...

CVSS3: 5.9
1%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3358-1

Security update for samba

1%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3017-1

Security update for samba

1%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2887-1

Security update for samba

1%
Низкий
около 2 лет назад
github логотип
GHSA-mfwc-hx97-869v

An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVSS3: 5.9
1%
Низкий
около 2 лет назад
fstec логотип
BDU:2023-03963

Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:3060-1

Security update for samba

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2930-1

Security update for samba

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2888-1

Security update for samba

около 2 лет назад
oracle-oval логотип
ELSA-2023-7139

ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)

почти 2 года назад
oracle-oval логотип
ELSA-2023-6667

ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)

почти 2 года назад
suse-cvrf логотип
SUSE-SU-2023:2929-1

Security update for samba

около 2 лет назад
redos логотип
ROS-20230920-02

Множественные уязвимости samba

CVSS3: 7.5
почти 2 года назад
redos логотип
ROS-20230920-01

Множественные уязвимости samba

CVSS3: 7.5
почти 2 года назад

Уязвимостей на страницу