Skip to main content

Vendor archive

samba CVEs

Beta · best-effort

245 CVEs tagged to vendor samba29 Critical, 75 High, 120 Medium, 21 Low, 0 Unrated.

CVE-2007-4572

Published Nov 16, 2007

Stack-based buffer overflow in nmbd in Samba 3.0.0 through 3.0.26a, when configured as a Primary or Backup Domain controller, allows remote attackers to have an unknown impact via…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-5398

Published Nov 16, 2007

Stack-based buffer overflow in the reply_netbios_packet function in nmbd/nmbd_packets.c in nmbd in Samba 3.0.0 through 3.0.26a, when operating as a WINS server, allows remote atta…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-4138

Published Sep 14, 2007

The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2446

Published May 14, 2007

Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers to execute arbitrary code via crafted MS-RPC requests invol…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2007-2447

Published May 14, 2007

The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands via shell metacharacters involving the (1) SamrChangePasswo…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0452

Published Feb 6, 2007

smbd in Samba 3.0.6 through 3.0.23d allows remote authenticated users to cause a denial of service (memory and CPU exhaustion) by renaming a file in a way that prevents a request…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0453

Published Feb 6, 2007

Buffer overflow in the nss_winbind.so.1 library in Samba 3.0.21 through 3.0.23d, as used in the winbindd daemon on Solaris, allows attackers to execute arbitrary code via the (1)…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-3403

Published Jul 12, 2006

The smdb daemon (smbd/service.c) in Samba 3.0.1 through 3.0.22 allows remote attackers to cause a denial of service (memory consumption) via a large number of share connection req…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-1059

Published Mar 30, 2006

The winbindd daemon in Samba 3.0.21 to 3.0.21c writes the machine trust account password in cleartext in log files, which allows local users to obtain the password and spoof the s…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1002

Published Mar 1, 2005

Integer underflow in pppd in cbcp.c for ppp 2.4.1 allows remote attackers to cause a denial of service (daemon crash) via a CBCP packet with an invalid length value that causes pp…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0808

Published Dec 31, 2004

The process_logon_packet function in the nmbd server for Samba 3.0.6 and earlier, when domain logons are enabled, allows remote attackers to cause a denial of service via a SAM_UA…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0829

Published Dec 31, 2004

smbd in Samba before 2.2.11 allows remote attackers to cause a denial of service (daemon crash) by sending a FindNextPrintChangeNotify request without a previous FindFirstPrintCha…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2687

Published Dec 31, 2004

distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs,…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-0815

Published Nov 3, 2004

The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to by…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0600

Published Jul 27, 2004

Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an invalid base-64 character during HTTP…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2004-0686

Published Jul 27, 2004

Buffer overflow in Samba 2.2.x to 2.2.9, and 3.0.0 to 3.0.4, when the "mangling method = hash" option is enabled in smb.conf, has unknown impact and attack vectors.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0186

Published Mar 15, 2004

smbmnt in Samba 2.x and 3.x on Linux 2.6, when installed setuid, allows local users to gain root privileges by mounting a Samba share that contains a setuid root program, whose se…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 201-225 of 245 CVEsPage 9 of 10