Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
–

317 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)2.0%—Samba2/3/202217/6/2026
A flaw was found in the way samba implemented DCE/RPC. If a client to a Samba server sent a very large DCE/RPC request, and chose to fragment it, an attacker could replace later fragments with their own data, bypassing the signature requirements.
ModificadaMedia (4.3)1.1%—SambaRedhat StorageFedoraproject Fedora21/2/202217/6/2026
All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.
ModificadaAlta (8.8)74%💥 PoCSambaDebian LinuxCanonical Ubuntu LinuxSynology Diskstation Manager+1921/2/202217/6/2026
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially…
ModificadaAlta (8.8)1.6%—SambaDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux18/2/202217/6/2026
Multiple flaws were found in the way samba AD DC implemented access and conformance checking of stored data. An attacker could use this flaw to cause total domain compromise.
ModificadaAlta (7.2)1.7%—SambaDebian LinuxFedoraproject FedoraCanonical Ubuntu Linux+1318/2/202217/6/2026
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total…
ModificadaAlta (8.8)1.7%—SambaFedoraproject Fedora18/2/202217/6/2026
A flaw was found in the way samba, as an Active Directory Domain Controller, is able to support an RODC (read-only domain controller). This would allow an RODC to print administrator tickets.
ModificadaAlta (8.1)1.6%—SambaDebian LinuxFedoraproject FedoraRedhat Codeready Linux Builder+2118/2/202217/6/2026
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.
ModificadaMedia (5.9)1.8%—SambaDebian LinuxFedoraproject FedoraRedhat Codeready Linux Builder+2018/2/202217/6/2026
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
ModificadaBaja (2.5)0.38%—Samba11/1/202217/6/2026
All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to…
ModificadaMedia (6.5)2.1%—SambaDebian LinuxNetapp Management Services FOR Element SoftwareManagement Services FOR Netapp HCI+112/10/202117/6/2026
A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.
ModificadaAlta (7.4)1.1%—Samba Rsync27/5/202117/6/2026
A flaw was found in rsync in versions since 3.2.0pre1. Rsync improperly validates certificate with host mismatch vulnerability. A remote, unauthenticated attacker could exploit the flaw by performing a man-in-the-middle attack using a valid certificate for another hostname which could compromise confidentiality and…
ModificadaAlta (7.5)3.8%—SambaDebian LinuxFedoraproject Fedora12/5/202117/6/2026
A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from this vulnerability is to system availability.
ModificadaAlta (7.5)4.3%—SambaDebian LinuxFedoraproject Fedora12/5/202117/6/2026
A flaw was found in Samba's libldb. Multiple, consecutive leading spaces in an LDAP attribute can lead to an out-of-bounds memory write, leading to a crash of the LDAP server process handling the request. The highest threat from this vulnerability is to system availability.
ModificadaMedia (6.8)1.6%—SambaFedoraproject FedoraRedhat Enterprise LinuxDebian Linux5/5/202117/6/2026
A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids). The code that performs this had a flaw that could allow it to read data beyond the end of the array in the case where a negative cache entry had been added to the mapping cache. This could cause…
ModificadaMedia (6.1)0.67%—Samba Cifs-utilsRedhat Enterprise LinuxFedoraproject Fedora19/4/202117/6/2026
A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.
ModificadaCrítica (9.8)4.8%—Samba-client Project Samba-client10/2/202117/6/2026
The samba-client package before 4.0.0 for Node.js allows command injection because of the use of process.exec.
ModificadaMedia (4.3)1.5%—SambaRedhat StorageRedhat Enterprise Linux3/12/202017/6/2026
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be unavailable to the attacker.
ModificadaMedia (6.5)2.2%—SambaRedhat Enterprise Linux2/12/202017/6/2026
A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC server, which also serves protocols other than dnsserver, will be restarted after a short delay, but it is easy for an authenticated non administrative attacker to crash it again as soon as it…
ModificadaAlta (7.2)14%—Microsoft Windows Server 2012Microsoft Windows Server 2016Microsoft Windows Server 2019Samba11/11/202017/6/2026
A security feature bypass vulnerability exists in the way Key Distribution Center (KDC) determines if a service ticket can be used for delegation via Kerberos Constrained Delegation (KCD). To exploit the vulnerability, a compromised service that is configured to use KCD could tamper with a service ticket that is not…
ModificadaMedia (5.5)0.62%—SambaOpensuse LeapFedoraproject FedoraDebian Linux29/10/202017/6/2026
A null pointer dereference flaw was found in samba's Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1. A local user could use this flaw to crash the winbind service causing denial of service.
ModificadaAlta (7)0.65%—Samba Cifs-utilsFedoraproject FedoraOpensuse Leap9/9/202017/6/2026
It was found that cifs-utils' mount.cifs was invoking a shell when requesting the Samba password, which could be used to inject arbitrary commands. An attacker able to invoke mount.cifs with special permission, such as via sudo rules, could use this flaw to escalate their privileges.
AnalizadaCrítica (10)99%⚠ Explotación activa💥 ExploitMicrosoft Windows Server 1903Microsoft Windows Server 1909Microsoft Windows Server 2004Microsoft Windows Server 2008+1117/8/202017/6/2026
An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC). An attacker who successfully exploited the vulnerability could run a specially crafted application on a device on the…
ModificadaAlta (7.5)3.9%—SambaFedoraproject FedoraOpensuse LeapDebian Linux7/7/202017/6/2026
A flaw was found in all Samba versions before 4.10.17, before 4.11.11 and before 4.12.4 in the way it processed NetBios over TCP/IP. This flaw allows a remote attacker could to cause the Samba server to consume excessive CPU use, resulting in a denial of service. This highest threat from this vulnerability is to…
ModificadaMedia (6.5)2.4%—SambaRedhat StorageOpensuse LeapFedoraproject Fedora+17/7/202017/6/2026
A NULL pointer dereference, or possible use-after-free flaw was found in Samba AD LDAP server in versions before 4.10.17, before 4.11.11 and before 4.12.4. Although some versions of Samba shipped with Red Hat Enterprise Linux do not support Samba in AD mode, the affected code is shipped with the libldb package. This…
ModificadaMedia (6.5)2.7%—SambaCanonical Ubuntu LinuxOpensuse LeapFedoraproject Fedora6/7/202017/6/2026
A use-after-free flaw was found in all samba LDAP server versions before 4.10.17, before 4.11.11, before 4.12.4 used in a AC DC configuration. A Samba LDAP user could use this flaw to crash samba.