Количество 17
Количество 17

CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.
CVE-2022-2127
An out-of-bounds read vulnerability was found in Samba due to insuffic ...

SUSE-SU-2023:3358-1
Security update for samba

SUSE-SU-2023:3017-1
Security update for samba

SUSE-SU-2023:2887-1
Security update for samba
GHSA-mfwc-hx97-869v
An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash.

BDU:2023-03963
Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

SUSE-SU-2023:3060-1
Security update for samba

SUSE-SU-2023:2930-1
Security update for samba

SUSE-SU-2023:2888-1
Security update for samba
ELSA-2023-7139
ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE)
ELSA-2023-6667
ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE)

SUSE-SU-2023:2929-1
Security update for samba

ROS-20230920-02
Множественные уязвимости samba

ROS-20230920-01
Множественные уязвимости samba
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад |
![]() | CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад |
![]() | CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад |
CVE-2022-2127 An out-of-bounds read vulnerability was found in Samba due to insuffic ... | CVSS3: 5.9 | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:3358-1 Security update for samba | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:3017-1 Security update for samba | 1% Низкий | около 2 лет назад | |
![]() | SUSE-SU-2023:2887-1 Security update for samba | 1% Низкий | около 2 лет назад | |
GHSA-mfwc-hx97-869v An out-of-bounds read vulnerability was found in Samba due to insufficient length checks in winbindd_pam_auth_crap.c. When performing NTLM authentication, the client replies to cryptographic challenges back to the server. These replies have variable lengths, and Winbind fails to check the lan manager response length. When Winbind is used for NTLM authentication, a maliciously crafted request can trigger an out-of-bounds read in Winbind, possibly resulting in a crash. | CVSS3: 5.9 | 1% Низкий | около 2 лет назад | |
![]() | BDU:2023-03963 Уязвимость компонента winbindd_pam_auth_crap.c пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | около 2 лет назад |
![]() | SUSE-SU-2023:3060-1 Security update for samba | около 2 лет назад | ||
![]() | SUSE-SU-2023:2930-1 Security update for samba | около 2 лет назад | ||
![]() | SUSE-SU-2023:2888-1 Security update for samba | около 2 лет назад | ||
ELSA-2023-7139 ELSA-2023-7139: samba security, bug fix, and enhancement update (MODERATE) | почти 2 года назад | |||
ELSA-2023-6667 ELSA-2023-6667: samba security, bug fix, and enhancement update (MODERATE) | почти 2 года назад | |||
![]() | SUSE-SU-2023:2929-1 Security update for samba | около 2 лет назад | ||
![]() | ROS-20230920-02 Множественные уязвимости samba | CVSS3: 7.5 | почти 2 года назад | |
![]() | ROS-20230920-01 Множественные уязвимости samba | CVSS3: 7.5 | почти 2 года назад |
Уязвимостей на страницу