Search CVE reports


Toggle filters

21 – 30 of 191 results


CVE-2022-45141

Medium priority
Fixed

Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and per RFC8429 it is assumed that rc4-hmac is weak, Vulnerable Samba Active Directory DCs will issue...

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-38023

Medium priority

Some fixes available 8 of 11

Netlogon RPC Elevation of Privilege Vulnerability

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Vulnerable
Show less packages

CVE-2022-37967

Medium priority

Some fixes available 8 of 11

Windows Kerberos Elevation of Privilege Vulnerability

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Vulnerable
Show less packages

CVE-2022-37966

Medium priority

Some fixes available 8 of 11

Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Fixed Fixed Fixed Vulnerable
Show less packages

CVE-2022-3437

Medium priority

Some fixes available 15 of 17

A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines of Heimdal. The DES and Triple-DES decryption routines in the Heimdal GSSAPI library allow a length-limited...

2 affected packages

heimdal, samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
heimdal Not affected Vulnerable Fixed Fixed
samba Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-20251

Low priority

Some fixes available 1 of 6

A flaw was found in samba. A race condition in the password lockout code may lead to the risk of brute force attacks being successful if special conditions are met.

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2022-3116

Medium priority

Some fixes available 4 of 11

The Heimdal Software Kerberos 5 implementation is vulnerable to a null pointer dereferance. An attacker with network access to an application that depends on the vulnerable code path can cause the application to crash.

2 affected packages

samba, heimdal

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Not affected Not affected Not affected
heimdal Vulnerable Vulnerable Fixed Fixed
Show less packages

CVE-2022-32743

Low priority
Vulnerable

Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users to write it.

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2022-1615

Low priority
Vulnerable

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2021-20316

Medium priority
Vulnerable

A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share.

1 affected package

samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
samba Not affected Ignored Ignored Ignored
Show less packages