Lucene search

K
osvGoogleOSV:CVE-2021-23192
HistoryMar 02, 2022 - 11:15 p.m.

CVE-2021-23192

2022-03-0223:15:08
Google
osv.dev
16
cve-2021-23192
samba
dce/rpc

AI Score

6.3

Confidence

Low

EPSS

0.001

Percentile

46.1%

A flaw was found in the way samba implemented DCE/RPC. If a client to a Samba server sent a very large DCE/RPC request, and chose to fragment it, an attacker could replace later fragments with their own data, bypassing the signature requirements.