CVE-2018-16851
- EPSS 14%
- Published 28.11.2018 14:29:00
- Last modified 21.11.2024 03:53:26
Samba from version 4.0.0 and before versions 4.7.12, 4.8.7, 4.9.3 is vulnerable to a denial of service. During the processing of an LDAP search before Samba's AD DC returns the LDAP entries to the client, the entries are cached in a single memory obj...
CVE-2018-16852
- EPSS 6.63%
- Published 28.11.2018 14:29:00
- Last modified 21.11.2024 03:53:26
Samba from version 4.9.0 and before version 4.9.3 is vulnerable to a NULL pointer de-reference. During the processing of an DNS zone in the DNS management DCE/RPC server, the internal DNS server or the Samba DLZ plugin for BIND9, if the DSPROPERTY_ZO...
CVE-2018-16853
- EPSS 3.71%
- Published 28.11.2018 14:29:00
- Last modified 21.11.2024 03:53:27
Samba from version 4.7.0 has a vulnerability that allows a user in a Samba AD domain to crash the KDC when Samba is built in the non-default MIT Kerberos configuration. With this advisory the Samba Team clarify that the MIT Kerberos build of the Samb...
CVE-2018-16857
- EPSS 2.6%
- Published 28.11.2018 14:29:00
- Last modified 21.11.2024 03:53:27
Samba from version 4.9.0 and before version 4.9.3 that have AD DC configurations watching for bad passwords (to restrict brute forcing of passwords) in a window of more than 3 minutes may not watch for bad passwords at all. The primary risk from this...
CVE-2016-2123
- EPSS 1.12%
- Published 01.11.2018 13:29:00
- Last modified 21.11.2024 02:47:52
A flaw was found in samba versions 4.0.0 to 4.5.2. The Samba routine ndr_pull_dnsp_name contains an integer wrap problem, leading to an attacker-controlled memory overwrite. ndr_pull_dnsp_name parses data from the Samba Active Directory ldb database....
CVE-2016-2125
- EPSS 12.78%
- Published 31.10.2018 20:29:00
- Last modified 21.11.2024 02:47:52
It was found that Samba before versions 4.5.3, 4.4.8, 4.3.13 always requested forwardable tickets when using Kerberos authentication. A service to which Samba authenticated using Kerberos could subsequently use the ticket to impersonate Samba to othe...
CVE-2018-10858
- EPSS 7.56%
- Published 22.08.2018 17:29:00
- Last modified 21.11.2024 03:42:09
A heap-buffer overflow was found in the way samba clients processed extra long filename in a directory listing. A malicious samba server could use this flaw to cause arbitrary code execution on a samba client. Samba versions before 4.6.16, 4.7.9 and ...
CVE-2018-10918
- EPSS 3.19%
- Published 22.08.2018 17:29:00
- Last modified 21.11.2024 03:42:18
A null pointer dereference flaw was found in the way samba checked database outputs from the LDB database layer. An authenticated attacker could use this flaw to crash a samba server in an Active Directory Domain Controller configuration. Samba versi...
CVE-2018-10919
- EPSS 2.29%
- Published 22.08.2018 17:29:00
- Last modified 21.11.2024 03:42:18
The Samba Active Directory LDAP server was vulnerable to an information disclosure flaw because of missing access control checks. An authenticated attacker could use this flaw to extract confidential attribute values using LDAP search expressions. Sa...
CVE-2018-1139
- EPSS 1.73%
- Published 22.08.2018 14:29:00
- Last modified 21.11.2024 03:59:16
A flaw was found in the way samba before 4.7.9 and 4.8.4 allowed the use of weak NTLMv1 authentication even when NTLMv1 was explicitly disabled. A man-in-the-middle attacker could use this flaw to read the credential and other details passed between ...