- EPSS 0.44%
- Published 14.09.2009 16:30:00
- Last modified 09.04.2025 00:30:58
Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle error...
CVE-2009-1886
- EPSS 24.81%
- Published 25.06.2009 01:30:01
- Last modified 09.04.2025 00:30:58
Multiple format string vulnerabilities in client/client.c in smbclient in Samba 3.2.0 through 3.2.12 might allow context-dependent attackers to execute arbitrary code via format string specifiers in a filename.
CVE-2009-1888
- EPSS 5.39%
- Published 25.06.2009 01:30:01
- Last modified 09.04.2025 00:30:58
The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vecto...
CVE-2009-0022
- EPSS 4.43%
- Published 05.01.2009 20:30:02
- Last modified 09.04.2025 00:30:58
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
CVE-2008-4314
- EPSS 13.32%
- Published 01.12.2008 15:30:00
- Last modified 09.04.2025 00:30:58
smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to...
CVE-2008-3789
- EPSS 1.27%
- Published 27.08.2008 20:41:00
- Last modified 09.04.2025 00:30:58
Samba 3.2.0 uses weak permissions (0666) for the (1) group_mapping.tdb and (2) group_mapping.ldb files, which allows local users to modify the membership of Unix groups.
CVE-2008-1105
- EPSS 72.95%
- Published 29.05.2008 16:32:00
- Last modified 09.04.2025 00:30:58
Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.
CVE-2007-6015
- EPSS 43.92%
- Published 13.12.2007 21:46:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logons" option is enabled, allows remote attackers to execute arbitrary code via a GETDC mailslot request composed of a long GETDC stri...
CVE-2007-4572
- EPSS 27.4%
- Published 16.11.2007 18:46:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in nmbd in Samba 3.0.0 through 3.0.26a, when configured as a Primary or Backup Domain controller, allows remote attackers to have an unknown impact via crafted GETDC mailslot requests, related to handling of GETDC logon se...
CVE-2007-5398
- EPSS 40.72%
- Published 16.11.2007 18:46:00
- Last modified 09.04.2025 00:30:58
Stack-based buffer overflow in the reply_netbios_packet function in nmbd/nmbd_packets.c in nmbd in Samba 3.0.0 through 3.0.26a, when operating as a WINS server, allows remote attackers to execute arbitrary code via crafted WINS Name Registration requ...