Skip to content
Noroxi

Samba records

266 published records for vendor samba.

All records

266 records
  • Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious cli

    CriticalCVSS 9.8KEVWeaponizedEPSS 99%

    samba · sambaMay 30, 2017

  • Netlogon Elevation of Privilege Vulnerability

    MediumCVSS 5.5KEVWeaponizedEPSS 99%

    microsoft · windows server 1903Aug 17, 2020

  • CVE-2015-0240
    66This week

    The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x befor

    CriticalCVSS 10.0WeaponizedEPSS 88%

    samba · sambaFeb 23, 2015

  • CVE-2003-0085
    66This week

    Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, al

    CriticalCVSS 10.0Proof of conceptEPSS 86%

    samba · sambaMar 31, 2003

  • CVE-2003-0201
    65This week

    Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG

    CriticalCVSS 10.0WeaponizedEPSS 85%

    samba · sambaMay 5, 2003

  • CVE-2004-2687
    63This week

    distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute a

    CriticalCVSS 9.3WeaponizedEPSS 88%

    apple · xcodeDec 31, 2004

  • CVE-2007-2446
    63This week

    Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers to execute arbitrary

    CriticalCVSS 10.0WeaponizedEPSS 78%

    samba · sambaMay 14, 2007

  • CVE-2012-1182
    62This week

    The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array len

    CriticalCVSS 10.0WeaponizedEPSS 74%

    samba · sambaApr 10, 2012

  • CVE-2024-12084
    61This week

    Rsync: heap buffer overflow in rsync due to improper checksum length handling

    CriticalCVSS 9.8Proof of conceptEPSS 72%

    samba · rsyncJan 15, 2025

  • The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and intero

    HighCVSS 8.8Proof of conceptEPSS 73%

    samba · sambaFeb 21, 2022

  • Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an

    CriticalCVSS 10.0WeaponizedEPSS 52%

    samba · sambaDec 11, 2002

  • Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0.x before 3.3.13 all

    HighCVSS 7.5WeaponizedEPSS 79%

    samba · sambaJun 17, 2010

  • Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute a

    HighCVSS 7.5Proof of conceptEPSS 69%

    samba · sambaMay 29, 2008

  • Samba: infinite loop in mdssvc rpc service for spotlight

    HighCVSS 7.5No exploitEPSS 62%

    samba · sambaJul 20, 2023

  • Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an

    CriticalCVSS 10.0Proof of conceptEPSS 29%

    samba · sambaJul 27, 2004

  • NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code v

    HighCVSS 7.9No exploitEPSS 56%

    samba · sambaAug 6, 2014

  • Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as disco

    CriticalCVSS 10.0No exploitEPSS 23%

    samba · sambaMay 5, 2003

  • Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logons" option is enabled

    CriticalCVSS 9.3Proof of conceptEPSS 27%

    samba · sambaDec 13, 2007

  • Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a

    CriticalCVSS 10.0No exploitEPSS 14%

    samba · sambaJan 27, 2005

  • Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of serv

    CriticalCVSS 10.0No exploitEPSS 13%

    samba · sambaJan 10, 2005

  • Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overw

    CriticalCVSS 10.0Proof of conceptEPSS 12%

    samba · sambaJun 23, 2001

  • Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.

    CriticalCVSS 10.0Proof of conceptEPSS 10%

    samba · sambaSep 30, 1997

  • Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.

    CriticalCVSS 9.8No exploitEPSS 10%

    samba · sambaNov 27, 2017

  • Integer overflow in the read_nttrans_ea_list function in nttrans.c in smbd in Samba 3.x before 3.5.22, 3.6.x before 3.6.17, and 4.x before 4

    MediumCVSS 5.0WeaponizedEPSS 69%

    samba · sambaAug 5, 2013

  • The MS-SAMR and MS-LSAD protocol implementations in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 mishandle DC

    HighCVSS 7.5Proof of conceptEPSS 37%

    samba · sambaApr 12, 2016