Lucene search

K
cve[email protected]CVE-2002-2196
HistoryNov 16, 2005 - 9:17 p.m.

CVE-2002-2196

2005-11-1621:17:00
CWE-119
web.nvd.nist.gov
29
samba
enum_csc_policy
buffer overflow
cve-2002-2196
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

Low

0.082 Low

EPSS

Percentile

94.4%

Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to execute arbitrary code via a buffer overflow attack.

Affected configurations

NVD
Node
sambasambaRange2.2.4
OR
sambasambaMatch1.9.17
OR
sambasambaMatch1.9.17p1
OR
sambasambaMatch1.9.17p3
OR
sambasambaMatch1.9.17p4
OR
sambasambaMatch1.9.17p5
OR
sambasambaMatch1.9.18p1
OR
sambasambaMatch1.9.18p10
OR
sambasambaMatch1.9.18p2
OR
sambasambaMatch1.9.18p3
OR
sambasambaMatch1.9.18p4
OR
sambasambaMatch1.9.18p5
OR
sambasambaMatch1.9.18p6
OR
sambasambaMatch1.9.18p7
OR
sambasambaMatch1.9.18p8
OR
sambasambaMatch2.0.0
OR
sambasambaMatch2.0.5a
OR
sambasambaMatch2.2.1
OR
sambasambaMatch2.2.1a
OR
sambasambaMatch2.2.3a
OR
sambasambaMatch2.2a

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

8 High

AI Score

Confidence

Low

0.082 Low

EPSS

Percentile

94.4%