Samba

Samba

212 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 07.10.2009 18:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

mount.cifs in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8 and 3.4 before 3.4.2, when mount.cifs is installed suid root, does not properly enforce permissions, which allows local users to read part of the credentials file and obtain t...

  • EPSS 0.85%
  • Veröffentlicht 14.09.2009 16:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle error...

  • EPSS 24.81%
  • Veröffentlicht 25.06.2009 01:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple format string vulnerabilities in client/client.c in smbclient in Samba 3.2.0 through 3.2.12 might allow context-dependent attackers to execute arbitrary code via format string specifiers in a filename.

Exploit
  • EPSS 5.39%
  • Veröffentlicht 25.06.2009 01:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vecto...

  • EPSS 4.43%
  • Veröffentlicht 05.01.2009 20:30:02
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.

  • EPSS 10.89%
  • Veröffentlicht 01.12.2008 15:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to...

  • EPSS 1.06%
  • Veröffentlicht 27.08.2008 20:41:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Samba 3.2.0 uses weak permissions (0666) for the (1) group_mapping.tdb and (2) group_mapping.ldb files, which allows local users to modify the membership of Unix groups.

  • EPSS 88.15%
  • Veröffentlicht 29.05.2008 16:32:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.

  • EPSS 56.54%
  • Veröffentlicht 13.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logons" option is enabled, allows remote attackers to execute arbitrary code via a GETDC mailslot request composed of a long GETDC stri...

  • EPSS 21.48%
  • Veröffentlicht 16.11.2007 18:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Stack-based buffer overflow in nmbd in Samba 3.0.0 through 3.0.26a, when configured as a Primary or Backup Domain controller, allows remote attackers to have an unknown impact via crafted GETDC mailslot requests, related to handling of GETDC logon se...