CVE-2018-1140
- EPSS 17.35%
- Veröffentlicht 22.08.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:16
A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All version...
CVE-2017-12151
- EPSS 2.1%
- Veröffentlicht 27.07.2018 12:29:00
- Zuletzt bearbeitet 21.11.2024 03:08:56
A flaw was found in the way samba client before samba 4.4.16, samba 4.5.14 and samba 4.6.8 used encryption with the max protocol set as SMB3. The connection could lose the requirement for signing and encrypting to any DFS redirects, allowing an attac...
CVE-2017-12150
- EPSS 19.42%
- Veröffentlicht 26.07.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:08:56
It was found that samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8 did not enforce "SMB signing" when certain configuration options were enabled. A remote attacker could launch a man-in-the-middle attack and retrieve information in pl...
CVE-2017-12163
- EPSS 27.33%
- Veröffentlicht 26.07.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:08:57
An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to ...
CVE-2018-1050
- EPSS 27.18%
- Veröffentlicht 13.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:04
All versions of Samba from 4.0.0 onwards are vulnerable to a denial of service attack when the RPC spoolss service is configured to be run as an external daemon. Missing input sanitization checks on some of the input parameters to spoolss RPC calls c...
CVE-2018-1057
- EPSS 5.31%
- Veröffentlicht 13.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:05
On a Samba 4 AD DC the LDAP server in all versions of Samba from 4.0.0 onwards incorrectly validates permissions to modify passwords over LDAP allowing authenticated users to change any other users' passwords, including administrative users and privi...
CVE-2017-2619
- EPSS 19.01%
- Veröffentlicht 12.03.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:23:50
Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a symlink race to allow access to areas of the server file system not exported under the share definition.
CVE-2017-14746
- EPSS 28.33%
- Veröffentlicht 27.11.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.
CVE-2017-15275
- EPSS 44.72%
- Veröffentlicht 27.11.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to clear allocated heap memory.
CVE-2017-11103
- EPSS 5.77%
- Veröffentlicht 13.07.2017 13:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heimdal before 7.4 allows remote attackers to impersonate services with Orpheus' Lyre attacks because it obtains service-principal names in a way that violates the Kerberos 5 protocol specification. In _krb5_extract_ticket() the KDC-REP service name ...