Samba records
266 published records for vendor samba.
Researcher profile
- Entered KEV
- 2 · 0.8%
- Weaponized
- 12 · 4.5%
- Pre-auth RCE
- 30
- With a fix record
- 92.1%
- Median publish → KEV
- 1287 days
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer18
- CWE-20 Improper Input Validation17
- CWE-264 Permissions, Privileges, and Access Controls13
- CWE-125 Out-of-bounds Read11
- CWE-59 Improper Link Resolution Before File Access ('Link Following')10
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor8
The weakness classes this vendor ships most often: where to look.
CWEAll records
266 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
99Now | CVE-2017-7494Weaponized | Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious clisamba · samba · CWE-94 | Critical9.8 | KEV | 99.4% | May 30, 2017 |
82Now | CVE-2020-1472Weaponized | Netlogon Elevation of Privilege Vulnerabilitymicrosoft · windows server 1903 | Medium5.5 | KEV | 99.4% | Aug 17, 2020 |
66This week | CVE-2015-0240Weaponized | The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x beforsamba · samba · CWE-17 | Critical10.0 | — | 88.0% | Feb 23, 2015 |
66This week | CVE-2003-0085Proof of concept | Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, alsamba · samba | Critical10.0 | — | 86.4% | Mar 31, 2003 |
65This week | CVE-2003-0201Weaponized | Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG samba · samba | Critical10.0 | — | 84.5% | May 5, 2003 |
63This week | CVE-2004-2687Weaponized | distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute aapple · xcode · CWE-16 | Critical9.3 | — | 88.2% | Dec 31, 2004 |
63This week | CVE-2007-2446Weaponized | Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers to execute arbitrarysamba · samba · CWE-119 | Critical10.0 | — | 77.7% | May 14, 2007 |
62This week | CVE-2012-1182Weaponized | The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array lensamba · samba · CWE-189 | Critical10.0 | — | 74.4% | Apr 10, 2012 |
61This week | CVE-2024-12084Proof of concept | Rsync: heap buffer overflow in rsync due to improper checksum length handlingsamba · rsync · CWE-122 | Critical9.8 | — | 72.1% | Jan 15, 2025 |
57Plan | CVE-2021-44142Proof of concept | The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interosamba · samba · CWE-125 | High8.8 | — | 73.4% | Feb 21, 2022 |
56Plan | CVE-2002-1318Weaponized | Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via ansamba · samba | Critical10.0 | — | 51.9% | Dec 11, 2002 |
54Plan | CVE-2010-2063Weaponized | Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0.x before 3.3.13 allsamba · samba · CWE-119 | High7.5 | — | 78.6% | Jun 17, 2010 |
51Plan | CVE-2008-1105Proof of concept | Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute asamba · samba · CWE-119 | High7.5 | — | 69.1% | May 29, 2008 |
49Plan | CVE-2023-34966No exploit | Samba: infinite loop in mdssvc rpc service for spotlightsamba · samba · CWE-835 | High7.5 | — | 62.4% | Jul 20, 2023 |
49Plan | CVE-2004-0600Proof of concept | Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via ansamba · samba | Critical10.0 | — | 29.4% | Jul 27, 2004 |
48Plan | CVE-2014-3560No exploit | NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code vsamba · samba · CWE-94 | High7.9 | — | 56.4% | Aug 6, 2014 |
47Plan | CVE-2003-0196No exploit | Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as discosamba · samba | Critical10.0 | — | 22.8% | May 5, 2003 |
45Plan | CVE-2007-6015Proof of concept | Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logons" option is enabledsamba · samba · CWE-119 | Critical9.3 | — | 27.5% | Dec 13, 2007 |
44Plan | CVE-2004-0882No exploit | Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via asamba · samba | Critical10.0 | — | 13.7% | Jan 27, 2005 |
44Plan | CVE-2004-1154No exploit | Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of servsamba · samba | Critical10.0 | — | 13.2% | Jan 10, 2005 |
44Plan | CVE-2001-1162Proof of concept | Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwsamba · samba | Critical10.0 | — | 12.0% | Jun 23, 2001 |
43Plan | CVE-1999-0182Proof of concept | Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.samba · samba | Critical10.0 | — | 9.7% | Sep 30, 1997 |
42Plan | CVE-2017-14746No exploit | Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.samba · samba · CWE-416 | Critical9.8 | — | 9.9% | Nov 27, 2017 |
41Plan | CVE-2013-4124Weaponized | Integer overflow in the read_nttrans_ea_list function in nttrans.c in smbd in Samba 3.x before 3.5.22, 3.6.x before 3.6.17, and 4.x before 4samba · samba · CWE-189 | Medium5.0 | — | 69.0% | Aug 5, 2013 |
41Plan | CVE-2016-2118Proof of concept | The MS-SAMR and MS-LSAD protocol implementations in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 mishandle DCsamba · samba · CWE-254 | High7.5 | — | 36.9% | Apr 12, 2016 |
- CVE-2017-749499Now
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious cli
CriticalCVSS 9.8KEVWeaponizedEPSS 99%samba · sambaMay 30, 2017
- CVE-2020-147282Now
Netlogon Elevation of Privilege Vulnerability
MediumCVSS 5.5KEVWeaponizedEPSS 99%microsoft · windows server 1903Aug 17, 2020
- CVE-2015-024066This week
The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x befor
CriticalCVSS 10.0WeaponizedEPSS 88%samba · sambaFeb 23, 2015
- CVE-2003-008566This week
Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, al
CriticalCVSS 10.0Proof of conceptEPSS 86%samba · sambaMar 31, 2003
- CVE-2003-020165This week
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG
CriticalCVSS 10.0WeaponizedEPSS 85%samba · sambaMay 5, 2003
- CVE-2004-268763This week
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute a
CriticalCVSS 9.3WeaponizedEPSS 88%apple · xcodeDec 31, 2004
- CVE-2007-244663This week
Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers to execute arbitrary
CriticalCVSS 10.0WeaponizedEPSS 78%samba · sambaMay 14, 2007
- CVE-2012-118262This week
The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array len
CriticalCVSS 10.0WeaponizedEPSS 74%samba · sambaApr 10, 2012
- CVE-2024-1208461This week
Rsync: heap buffer overflow in rsync due to improper checksum length handling
CriticalCVSS 9.8Proof of conceptEPSS 72%samba · rsyncJan 15, 2025
- CVE-2021-4414257Plan
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and intero
HighCVSS 8.8Proof of conceptEPSS 73%samba · sambaFeb 21, 2022
- CVE-2002-131856Plan
Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an
CriticalCVSS 10.0WeaponizedEPSS 52%samba · sambaDec 11, 2002
- CVE-2010-206354Plan
Buffer overflow in the SMB1 packet chaining implementation in the chain_reply function in process.c in smbd in Samba 3.0.x before 3.3.13 all
HighCVSS 7.5WeaponizedEPSS 79%samba · sambaJun 17, 2010
- CVE-2008-110551Plan
Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute a
HighCVSS 7.5Proof of conceptEPSS 69%samba · sambaMay 29, 2008
- CVE-2023-3496649Plan
Samba: infinite loop in mdssvc rpc service for spotlight
HighCVSS 7.5No exploitEPSS 62%samba · sambaJul 20, 2023
- CVE-2004-060049Plan
Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an
CriticalCVSS 10.0Proof of conceptEPSS 29%samba · sambaJul 27, 2004
- CVE-2014-356048Plan
NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code v
HighCVSS 7.9No exploitEPSS 56%samba · sambaAug 6, 2014
- CVE-2003-019647Plan
Multiple buffer overflows in Samba before 2.2.8a may allow remote attackers to execute arbitrary code or cause a denial of service, as disco
CriticalCVSS 10.0No exploitEPSS 23%samba · sambaMay 5, 2003
- CVE-2007-601545Plan
Stack-based buffer overflow in the send_mailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logons" option is enabled
CriticalCVSS 9.3Proof of conceptEPSS 27%samba · sambaDec 13, 2007
- CVE-2004-088244Plan
Buffer overflow in the QFILEPATHINFO request handler in Samba 3.0.x through 3.0.7 may allow remote attackers to execute arbitrary code via a
CriticalCVSS 10.0No exploitEPSS 14%samba · sambaJan 27, 2005
- CVE-2004-115444Plan
Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of serv
CriticalCVSS 10.0No exploitEPSS 13%samba · sambaJan 10, 2005
- CVE-2001-116244Plan
Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overw
CriticalCVSS 10.0Proof of conceptEPSS 12%samba · sambaJun 23, 2001
- CVE-1999-018243Plan
Samba has a buffer overflow which allows a remote attacker to obtain root access by specifying a long password.
CriticalCVSS 10.0Proof of conceptEPSS 10%samba · sambaSep 30, 1997
- CVE-2017-1474642Plan
Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.
CriticalCVSS 9.8No exploitEPSS 10%samba · sambaNov 27, 2017
- CVE-2013-412441Plan
Integer overflow in the read_nttrans_ea_list function in nttrans.c in smbd in Samba 3.x before 3.5.22, 3.6.x before 3.6.17, and 4.x before 4
MediumCVSS 5.0WeaponizedEPSS 69%samba · sambaAug 5, 2013
- CVE-2016-211841Plan
The MS-SAMR and MS-LSAD protocol implementations in Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 mishandle DC
HighCVSS 7.5Proof of conceptEPSS 37%samba · sambaApr 12, 2016