CVE-2002-1318

7 documents7 sources
Severity
10.0CRITICAL
EPSS
75.0%
top 1.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 11
Latest updateMay 3

Description

Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an encrypted password that causes the overflow during decryption in which a DOS codepage string is converted to a little-endian UCS2 unicode string.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages4 packages

Debiansamba< 2.2.7+3
NVDsamba/samba5 versions+4
NVDsgi/irix19 versions+18
NVDhp/cifs-9000_servera.01.08, a.01.08.01, a.01.09+2

Patches

🔴Vulnerability Details

3
GHSA
GHSA-746r-2wrh-hhjx: Buffer overflow in samba 22022-05-03
CVEList
CVE-2002-1318: Buffer overflow in samba 22004-09-01
OSV
CVE-2002-1318: Buffer overflow in samba 22002-12-11

📋Vendor Advisories

2
Red Hat
security flaw2002-11-20
Debian
CVE-2002-1318: samba - Buffer overflow in samba 2.2.2 through 2.2.6 allows remote attackers to cause a ...2002

💬Community

1
Bugzilla
CVE-2002-1318 security flaw2018-08-16