Vulnerabilities
Vulnerable Software
Samba:  >> Samba  >> 3.0.25b  Security Vulnerabilities
Stack-based buffer overflow in nmbd in Samba 3.0.0 through 3.0.26a, when configured as a Primary or Backup Domain controller, allows remote attackers to have an unknown impact via crafted GETDC mailslot requests, related to handling of GETDC logon server requests.
CVSS Score
9.3
EPSS Score
0.059
Published
2007-11-16
Stack-based buffer overflow in the reply_netbios_packet function in nmbd/nmbd_packets.c in nmbd in Samba 3.0.0 through 3.0.26a, when operating as a WINS server, allows remote attackers to execute arbitrary code via crafted WINS Name Registration requests followed by a WINS Name Query request.
CVSS Score
9.3
EPSS Score
0.114
Published
2007-11-16
The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local users the privileges of gid 0 when the (1) RFC2307 or (2) Services for UNIX (SFU) primary group attribute is not defined.
CVSS Score
6.9
EPSS Score
0.007
Published
2007-09-14


Contact Us

Shodan ® - All rights reserved