VYPR

smbd

by Samba (software)

Source repositories

CVEs (3)

  • CVE-2022-3592MedJan 12, 2023
    risk 0.42cvss 6.5epss 0.02

    A symlink following vulnerability was found in Samba, where a user can create a symbolic link that will make 'smbd' escape the configured share path. This flaw allows a remote user with access to the exported part of the file system under a share via SMB1 unix extensions or NFS…

  • CVE-1999-0811Jul 21, 1999
    risk 0.03cvss epss 0.03

    Buffer overflow in Samba smbd program via a malformed message command.

  • CVE-2008-4314Dec 1, 2008
    risk 0.00cvss epss 0.04

    smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to be performed.