Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2021-20254

Quick assessment

Affected
n/a samba
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Samba是Samba团队的一套可使UNIX系列的操作系统与微软Windows操作系统的SMB/CIFS网络协议做连结的自由软件。该软件支持共享打印机、互相传输资料文件等。 Samba 存在缓冲区错误漏洞,该漏洞源于在将Windows组标识(sid)映射到unix组标识(gid)时存在边界条件,这导致在Samba服务器进程令牌中创建负面的idmap缓存项。以下产品及版本受到影响:Samba: 3.6.0, 3.6.1, 3.6.2, 3.6.3, 3.6.4, 3.6.5, 3.6.6, 3.6.7, 3

AI Predicted 7.8 Difficulty: Moderate EPSS 1.62% · P75

Possible ATT&CK Techniques 1 AI

T1552 · Unsecured Credentials
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2021-20254

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
A flaw was found in samba. The Samba smbd file server must map Windows group identities (SIDs) into unix group ids (gids). The code that performs this had a flaw that could allow it to read data beyond the end of the array in the case where a negative cache entry had been added to the mapping cache. This could cause the calling code to return those values into the process token that stores the group membership for a user. The highest threat from this vulnerability is to data confidentiality and integrity.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
跨界内存读
Source: CVE Program / CVE List V5
Vulnerability Title
Samba 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Samba是Samba团队的一套可使UNIX系列的操作系统与微软Windows操作系统的SMB/CIFS网络协议做连结的自由软件。该软件支持共享打印机、互相传输资料文件等。 Samba 存在缓冲区错误漏洞,该漏洞源于在将Windows组标识(sid)映射到unix组标识(gid)时存在边界条件,这导致在Samba服务器进程令牌中创建负面的idmap缓存项。以下产品及版本受到影响:Samba: 3.6.0, 3.6.1, 3.6.2, 3.6.3, 3.6.4, 3.6.5, 3.6.6, 3.6.7, 3
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- samba samba 4.14.1, samba 4.13.6, samba 4.12.13 -

II. Public POCs for CVE-2021-20254

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-20254

请登录查看更多情报信息。

Vendor Advisories for CVE-2021-20254 (3)

Mailing List Discussions for CVE-2021-20254 (3)

Other References for CVE-2021-20254 (1)

Same Patch Batch · n/a · 2021-05-05 · 25 CVEs total

CVE-2016-20010 WordPress 插件安全漏洞
CVE-2021-31542 Django 代码问题漏洞
CVE-2021-25179 SolarWinds Serv-U File Server 跨站脚本漏洞
CVE-2020-22428 SolarWinds Serv-U FTP Server 跨站脚本漏洞
CVE-2020-36334 WordPress 插件跨站请求伪造漏洞
CVE-2020-36333 WordPress 插件访问控制错误漏洞
CVE-2021-31800 impacket 路径遍历漏洞
CVE-2021-29245 BTCPay Server 安全特征问题漏洞
CVE-2021-29246 BTCPay Server 路径遍历漏洞
CVE-2021-29247 BTCPay Server 信息泄露漏洞
CVE-2021-29248 BTCPay Server 信息泄露漏洞
CVE-2021-29250 BTCPay Server 跨站脚本漏洞
CVE-2020-19114 PHPGurukul Online Book Store SQL注入漏洞
CVE-2021-32055 Mutt 缓冲区错误漏洞
CVE-2021-32062 Mapserver 路径遍历漏洞
CVE-2020-19107 PHPGurukul Online Book Store SQL注入漏洞
CVE-2020-19108 PHPGurukul Online Book Store SQL注入漏洞
CVE-2020-19109 PHPGurukul Online Book Store SQL注入漏洞
CVE-2020-19110 PHPGurukul Online Book Store SQL注入漏洞
CVE-2020-19111 PHPGurukul Online Book Store 授权问题漏洞

Showing top 20 of 25 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2021-20254

No comments yet


Leave a comment