Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an invalid base-64 character during HTTP basic authentication.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Samba 3.x SWAT预验证远程缓冲区溢出漏洞
Vulnerability Description
SWAT是Samba Web管理工具。 Samba SWAT服务预验证存在缓冲区溢出问题,远程攻击者可以利用这个漏洞在系统上以SWAT进程权限执行任意指令。 问题存在于source/lib/util_str.c文件中的进行HTTP Basic验证的base64_decode_data_blob函数中: int bit_offset, byte_offset, idx, i, n; ... ... if (*s == '=') n -= 1 /* fix up length */ decoded.lengt
CVSS Information
N/A
Vulnerability Type
N/A