rpm package
suse/samba&distro=SUSE Manager Server 4.0
pkg:rpm/suse/samba&distro=SUSE%20Manager%20Server%204.0
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-27840 | — | < 4.9.5+git.432.d9b18c4f390-3.50.1 | 4.9.5+git.432.d9b18c4f390-3.50.1 | May 12, 2021 | A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from this vulnerability is to syst | ||
| CVE-2021-20277 | — | < 4.9.5+git.432.d9b18c4f390-3.50.1 | 4.9.5+git.432.d9b18c4f390-3.50.1 | May 12, 2021 | A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a crash of the LDAP server process handling the request. The highest threat from this vulnerability is to system availability. | ||
| CVE-2021-20254 | — | < 4.9.5+git.432.d9b18c4f390-3.50.1 | 4.9.5+git.432.d9b18c4f390-3.50.1 | May 5, 2021 | A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids). The code that performs this had a flaw that could allow it to read data beyond the end of the array in the case where a negative cache entry had been added t |
- CVE-2020-27840May 12, 2021affected < 4.9.5+git.432.d9b18c4f390-3.50.1fixed 4.9.5+git.432.d9b18c4f390-3.50.1
A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from this vulnerability is to syst
- CVE-2021-20277May 12, 2021affected < 4.9.5+git.432.d9b18c4f390-3.50.1fixed 4.9.5+git.432.d9b18c4f390-3.50.1
A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a crash of the LDAP server process handling the request. The highest threat from this vulnerability is to system availability.
- CVE-2021-20254May 5, 2021affected < 4.9.5+git.432.d9b18c4f390-3.50.1fixed 4.9.5+git.432.d9b18c4f390-3.50.1
A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids). The code that performs this had a flaw that could allow it to read data beyond the end of the array in the case where a negative cache entry had been added t