CVE-2015-3223
- EPSS 5.18%
- Veröffentlicht 29.12.2015 22:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ldb_wildcard_compare function in ldb_match.c in ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, mishandles certain zero values, which allows remote attackers to cause a deni...
- EPSS 90.93%
- Veröffentlicht 24.02.2015 01:59:00
- Zuletzt bearbeitet 09.05.2025 20:15:34
The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execu...
CVE-2014-8143
- EPSS 4.9%
- Veröffentlicht 17.01.2015 02:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Samba 4.0.x before 4.0.24, 4.1.x before 4.1.16, and 4.2.x before 4.2rc4, when an Active Directory Domain Controller (AD DC) is configured, allows remote authenticated users to set the LDB userAccountControl UF_SERVER_TRUST_ACCOUNT bit, and consequent...
CVE-2014-3560
- EPSS 41.46%
- Veröffentlicht 06.08.2014 18:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code via unspecified vectors that modify heap memory, involving a sizeof operation on an incorrect variable in the u...
CVE-2014-0244
- EPSS 16.31%
- Veröffentlicht 23.06.2014 14:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The sys_recvfrom function in nmbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x before 4.1.9 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed UDP packet.
CVE-2014-3493
- EPSS 2.25%
- Veröffentlicht 23.06.2014 14:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The push_ascii function in smbd in Samba 3.6.x before 3.6.24, 4.0.x before 4.0.19, and 4.1.x before 4.1.9 allows remote authenticated users to cause a denial of service (memory corruption and daemon crash) via an attempt to read a Unicode pathname wi...
CVE-2014-0178
- EPSS 1.31%
- Veröffentlicht 28.05.2014 04:58:32
- Zuletzt bearbeitet 12.04.2025 10:46:40
Samba 3.6.6 through 3.6.23, 4.0.x before 4.0.18, and 4.1.x before 4.1.8, when a certain vfs shadow copy configuration is enabled, does not properly initialize the SRV_SNAPSHOT_ARRAY response field, which allows remote authenticated users to obtain po...
- EPSS 8.57%
- Veröffentlicht 28.05.2014 04:58:32
- Zuletzt bearbeitet 12.04.2025 10:46:40
The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via ...
- EPSS 6.48%
- Veröffentlicht 14.03.2014 10:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) S...
CVE-2013-6442
- EPSS 1.19%
- Veröffentlicht 14.03.2014 10:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circu...