Samba

Samba

211 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.54%
  • Published 12.01.2023 15:15:10
  • Last modified 08.04.2025 16:15:23

A symlink following vulnerability was found in Samba, where a user can create a symbolic link that will make 'smbd' escape the configured share path. This flaw allows a remote user with access to the exported part of the file system under a share via...

Exploit
  • EPSS 8.74%
  • Published 25.12.2022 06:15:09
  • Last modified 14.04.2025 19:15:31

PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-b...

  • EPSS 1.96%
  • Published 25.12.2022 05:15:11
  • Last modified 15.04.2025 14:15:35

Heimdal before 7.7.1 allows remote attackers to execute arbitrary code because of an invalid free in the ASN.1 codec used by the Key Distribution Center (KDC).

  • EPSS 0.31%
  • Published 09.11.2022 22:15:16
  • Last modified 02.01.2025 22:15:15

Netlogon RPC Elevation of Privilege Vulnerability

  • EPSS 2.35%
  • Published 09.11.2022 22:15:14
  • Last modified 02.01.2025 22:15:10

Windows Kerberos Elevation of Privilege Vulnerability

  • EPSS 1.08%
  • Published 09.11.2022 22:15:13
  • Last modified 02.01.2025 22:15:09

Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability

Exploit
  • EPSS 1.11%
  • Published 01.09.2022 21:15:10
  • Last modified 22.08.2025 10:31:41

Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users to write it.

Exploit
  • EPSS 0.14%
  • Published 01.09.2022 21:15:08
  • Last modified 22.08.2025 20:19:52

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.

  • EPSS 0.24%
  • Published 29.08.2022 15:15:09
  • Last modified 21.11.2024 06:38:24

The Samba AD DC includes checks when adding service principals names (SPNs) to an account to ensure that SPNs do not alias with those already in the database. Some of these checks are able to be bypassed if an account modification re-adds an SPN that...

  • EPSS 0.2%
  • Published 25.08.2022 18:15:10
  • Last modified 21.11.2024 07:06:52

A flaw was found in Samba. Some SMB1 write requests were not correctly range-checked to ensure the client had sent enough data to fulfill the write, allowing server memory contents to be written into the file (or printer) instead of client-supplied d...