Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Samba version 4.0.0 up to 4.5.2 is vulnerable to privilege elevation due to incorrect handling of the PAC (Privilege Attribute Certificate) checksum. A remote, authenticated, attacker can cause the winbindd process to crash using a legitimate Kerberos ticket. A local service with access to the winbindd privileged pipe can cause winbindd to cache elevated access permissions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Samba 安全漏洞
Vulnerability Description
Samba是Samba团队开发的一套可使UNIX系列的操作系统与微软Windows操作系统的SMB/CIFS网络协议做连结的自由软件。该软件支持共享打印机、互相传输资料文件等。 Samba中存在远程拒绝服务漏洞。攻击者可利用该漏洞造成winbindd崩溃,导致拒绝服务。以下版本受到影响:Samba 4.5.3之前的版本,4.4.8之前的版本,4.3.13之前的版本。
CVSS Information
N/A
Vulnerability Type
N/A