Vulnerabilities in Samba leading to buffer overflow and out-of-bounds access
Corrective releases of Samba package versions 4.17.2, 4.16.6, and 4.15.11 have been published to fix two vulnerabilities. The release of package updates across distributions can be tracked on the pages: Debian, Ubuntu, Gentoo, RHEL, SUSE, Arch, FreeBSD. CVE-2022-3437 — buffer overflow in unwrap_des() and unwrap_des3() functions provided in the GSSAPI library from the Heimdal package (included with Samba since version 4.0). Exploiting the vulnerability […]
