CVE Vulnerabilities

CVE-2012-1182

Published: Apr 10, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
8.3 CRITICAL
AV:A/AC:L/Au:N/C:C/I:C/A:C
RedHat/V3
Ubuntu
HIGH
root.io logo minimus.io logo echo.ai logo

The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array length in a manner consistent with validation of array memory allocation, which allows remote attackers to execute arbitrary code via a crafted RPC call.

Affected Software

NameVendorStart VersionEnd Version
SambaSamba*3.4.15 (including)
SambaSamba3.0.0 (including)3.0.0 (including)
SambaSamba3.0.1 (including)3.0.1 (including)
SambaSamba3.0.2 (including)3.0.2 (including)
SambaSamba3.0.2-a (including)3.0.2-a (including)
SambaSamba3.0.2a (including)3.0.2a (including)
SambaSamba3.0.3 (including)3.0.3 (including)
SambaSamba3.0.4 (including)3.0.4 (including)
SambaSamba3.0.4-rc1 (including)3.0.4-rc1 (including)
SambaSamba3.0.5 (including)3.0.5 (including)
SambaSamba3.0.6 (including)3.0.6 (including)
SambaSamba3.0.7 (including)3.0.7 (including)
SambaSamba3.0.8 (including)3.0.8 (including)
SambaSamba3.0.9 (including)3.0.9 (including)
SambaSamba3.0.10 (including)3.0.10 (including)
SambaSamba3.0.11 (including)3.0.11 (including)
SambaSamba3.0.12 (including)3.0.12 (including)
SambaSamba3.0.13 (including)3.0.13 (including)
SambaSamba3.0.14 (including)3.0.14 (including)
SambaSamba3.0.14-a (including)3.0.14-a (including)
SambaSamba3.0.14a (including)3.0.14a (including)
SambaSamba3.0.15 (including)3.0.15 (including)
SambaSamba3.0.16 (including)3.0.16 (including)
SambaSamba3.0.17 (including)3.0.17 (including)
SambaSamba3.0.18 (including)3.0.18 (including)
SambaSamba3.0.19 (including)3.0.19 (including)
SambaSamba3.0.20 (including)3.0.20 (including)
SambaSamba3.0.20-a (including)3.0.20-a (including)
SambaSamba3.0.20-b (including)3.0.20-b (including)
SambaSamba3.0.20a (including)3.0.20a (including)
SambaSamba3.0.20b (including)3.0.20b (including)
SambaSamba3.0.21 (including)3.0.21 (including)
SambaSamba3.0.21-a (including)3.0.21-a (including)
SambaSamba3.0.21-b (including)3.0.21-b (including)
SambaSamba3.0.21-c (including)3.0.21-c (including)
SambaSamba3.0.21a (including)3.0.21a (including)
SambaSamba3.0.21b (including)3.0.21b (including)
SambaSamba3.0.21c (including)3.0.21c (including)
SambaSamba3.0.22 (including)3.0.22 (including)
SambaSamba3.0.23 (including)3.0.23 (including)
SambaSamba3.0.23-a (including)3.0.23-a (including)
SambaSamba3.0.23-b (including)3.0.23-b (including)
SambaSamba3.0.23-c (including)3.0.23-c (including)
SambaSamba3.0.23-d (including)3.0.23-d (including)
SambaSamba3.0.23a (including)3.0.23a (including)
SambaSamba3.0.23b (including)3.0.23b (including)
SambaSamba3.0.23c (including)3.0.23c (including)
SambaSamba3.0.23d (including)3.0.23d (including)
SambaSamba3.0.24 (including)3.0.24 (including)
SambaSamba3.0.25 (including)3.0.25 (including)
SambaSamba3.0.25-a (including)3.0.25-a (including)
SambaSamba3.0.25-b (including)3.0.25-b (including)
SambaSamba3.0.25-c (including)3.0.25-c (including)
SambaSamba3.0.25-pre1 (including)3.0.25-pre1 (including)
SambaSamba3.0.25-pre2 (including)3.0.25-pre2 (including)
SambaSamba3.0.25-rc1 (including)3.0.25-rc1 (including)
SambaSamba3.0.25-rc2 (including)3.0.25-rc2 (including)
SambaSamba3.0.25-rc3 (including)3.0.25-rc3 (including)
SambaSamba3.0.25a (including)3.0.25a (including)
SambaSamba3.0.25b (including)3.0.25b (including)
SambaSamba3.0.25c (including)3.0.25c (including)
SambaSamba3.0.26 (including)3.0.26 (including)
SambaSamba3.0.26-a (including)3.0.26-a (including)
SambaSamba3.0.26a (including)3.0.26a (including)
SambaSamba3.0.27 (including)3.0.27 (including)
SambaSamba3.0.27-a (including)3.0.27-a (including)
SambaSamba3.0.28 (including)3.0.28 (including)
SambaSamba3.0.28-a (including)3.0.28-a (including)
SambaSamba3.0.29 (including)3.0.29 (including)
SambaSamba3.0.30 (including)3.0.30 (including)
SambaSamba3.0.31 (including)3.0.31 (including)
SambaSamba3.0.32 (including)3.0.32 (including)
SambaSamba3.0.33 (including)3.0.33 (including)
SambaSamba3.0.34 (including)3.0.34 (including)
SambaSamba3.0.35 (including)3.0.35 (including)
SambaSamba3.0.36 (including)3.0.36 (including)
SambaSamba3.0.37 (including)3.0.37 (including)
SambaSamba3.1.0 (including)3.1.0 (including)
SambaSamba3.2.0 (including)3.2.0 (including)
SambaSamba3.2.1 (including)3.2.1 (including)
SambaSamba3.2.2 (including)3.2.2 (including)
SambaSamba3.2.3 (including)3.2.3 (including)
SambaSamba3.2.4 (including)3.2.4 (including)
SambaSamba3.2.5 (including)3.2.5 (including)
SambaSamba3.2.6 (including)3.2.6 (including)
SambaSamba3.2.7 (including)3.2.7 (including)
SambaSamba3.2.8 (including)3.2.8 (including)
SambaSamba3.2.9 (including)3.2.9 (including)
SambaSamba3.2.10 (including)3.2.10 (including)
SambaSamba3.2.11 (including)3.2.11 (including)
SambaSamba3.2.12 (including)3.2.12 (including)
SambaSamba3.2.13 (including)3.2.13 (including)
SambaSamba3.2.14 (including)3.2.14 (including)
SambaSamba3.2.15 (including)3.2.15 (including)
SambaSamba3.3.0 (including)3.3.0 (including)
SambaSamba3.3.1 (including)3.3.1 (including)
SambaSamba3.3.2 (including)3.3.2 (including)
SambaSamba3.3.3 (including)3.3.3 (including)
SambaSamba3.3.4 (including)3.3.4 (including)
SambaSamba3.3.5 (including)3.3.5 (including)
SambaSamba3.3.6 (including)3.3.6 (including)
SambaSamba3.3.7 (including)3.3.7 (including)
SambaSamba3.3.8 (including)3.3.8 (including)
SambaSamba3.3.9 (including)3.3.9 (including)
SambaSamba3.3.10 (including)3.3.10 (including)
SambaSamba3.3.11 (including)3.3.11 (including)
SambaSamba3.3.12 (including)3.3.12 (including)
SambaSamba3.3.13 (including)3.3.13 (including)
SambaSamba3.3.14 (including)3.3.14 (including)
SambaSamba3.3.15 (including)3.3.15 (including)
SambaSamba3.3.16 (including)3.3.16 (including)
SambaSamba3.4.0 (including)3.4.0 (including)
SambaSamba3.4.1 (including)3.4.1 (including)
SambaSamba3.4.2 (including)3.4.2 (including)
SambaSamba3.4.3 (including)3.4.3 (including)
SambaSamba3.4.4 (including)3.4.4 (including)
SambaSamba3.4.5 (including)3.4.5 (including)
SambaSamba3.4.6 (including)3.4.6 (including)
SambaSamba3.4.7 (including)3.4.7 (including)
SambaSamba3.4.8 (including)3.4.8 (including)
SambaSamba3.4.9 (including)3.4.9 (including)
SambaSamba3.4.10 (including)3.4.10 (including)
SambaSamba3.4.11 (including)3.4.11 (including)
SambaSamba3.4.12 (including)3.4.12 (including)
SambaSamba3.4.13 (including)3.4.13 (including)
SambaSamba3.4.14 (including)3.4.14 (including)
Red Hat Enterprise Linux 4 Extended Lifecycle SupportRedHatsamba-0:3.0.33-3.36.el4*
Red Hat Enterprise Linux 5RedHatsamba-0:3.0.33-3.39.el5_8*
Red Hat Enterprise Linux 5RedHatsamba3x-0:3.5.10-0.108.el5_8*
Red Hat Enterprise Linux 5.3 Long LifeRedHatsamba-0:3.0.33-3.7.el5_3.5*
Red Hat Enterprise Linux 5.6 EUS - Server OnlyRedHatsamba-0:3.0.33-3.29.el5_6.5*
Red Hat Enterprise Linux 5.6 EUS - Server OnlyRedHatsamba3x-0:3.5.4-0.70.el5_6.2*
Red Hat Enterprise Linux 6RedHatsamba-0:3.5.10-115.el6_2*
Red Hat Enterprise Linux 6RedHatsamba4-0:4.0.0-55.el6.rc4*
Red Hat Enterprise Linux 6RedHatevolution-mapi-0:0.28.3-12.el6*
Red Hat Enterprise Linux 6RedHatopenchange-0:1.0-4.el6*
Red Hat Enterprise Linux 6.0 EUS - Server OnlyRedHatsamba-0:3.5.4-68.el6_0.3*
Red Hat Enterprise Linux 6.1 EUS - Server OnlyRedHatsamba-0:3.5.6-86.el6_1.5*
SambaUbuntudevel*
SambaUbuntuhardy*
SambaUbuntulucid*
SambaUbuntumaverick*
SambaUbuntunatty*
SambaUbuntuoneiric*

References