CVE-2011-0719
Samba 3.x before 3.3.15, 3.4.x before 3.4.12, and 3.5.x before 3.5.7 does not perform range checks for file descriptors before use of the FD_SET macro, which allows remote attackers to cause a denial of service (stack memory corruption, and infinite…
Does this matter?
Lower severity and a low EPSS score (4.65%). Track it; it rarely justifies an emergency change on its own.
Description
Samba 3.x before 3.3.15, 3.4.x before 3.4.12, and 3.5.x before 3.5.7 does not perform range checks for file descriptors before use of the FD_SET macro, which allows remote attackers to cause a denial of service (stack memory corruption, and infinite loop or daemon crash) by opening a large number of files, related to (1) Winbind or (2) smbd.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 4.65% probability · 91th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- samba/samba
- Source
- secalert@redhat.com
References
- http://lists.apple.com/archives/security-announce/2011//Jun/msg00000.html
- http://lists.fedoraproject.org/pipermail/package-announce/2011-March/056229.html
- http://lists.fedoraproject.org/pipermail/package-announce/2011-March/056241.html
- http://marc.info/?l=bugtraq&m=130835366526620&w=2
- http://samba.org/samba/security/CVE-2011-0719.htmlVendor Advisory
- http://secunia.com/advisories/43482Vendor Advisory
- http://secunia.com/advisories/43503Vendor Advisory
- http://secunia.com/advisories/43512Vendor Advisory
- http://secunia.com/advisories/43517Vendor Advisory
- http://secunia.com/advisories/43556Vendor Advisory
- http://secunia.com/advisories/43557Vendor Advisory
- http://secunia.com/advisories/43843Vendor Advisory
- http://slackware.com/security/viewer.php?l=slackware-security&y=2011&m=slackware-security.593629
- http://support.apple.com/kb/HT4723
- http://www.debian.org/security/2011/dsa-2175
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:038
- http://www.redhat.com/support/errata/RHSA-2011-0305.htmlVendor Advisory
- http://www.redhat.com/support/errata/RHSA-2011-0306.htmlVendor Advisory
- http://www.samba.org/samba/history/samba-3.3.15.html
- http://www.samba.org/samba/history/samba-3.4.12.html
- http://www.samba.org/samba/history/samba-3.5.7.html
- http://www.securityfocus.com/bid/46597
- http://www.securitytracker.com/id?1025132
- http://www.ubuntu.com/usn/USN-1075-1
- http://www.vupen.com/english/advisories/2011/0517Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0518Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0519Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0520Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0522Vendor Advisory
- http://www.vupen.com/english/advisories/2011/0541Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.