7.5
CVSSv2

CVE-2003-0686

Published: 20/10/2003 Updated: 03/05/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and previous versions, when authenticating to a remote service, allows remote malicious users to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

dave airlie pam smb 1.1.3

dave airlie pam smb 1.1.4

redhat pam smb 1.1.6-7

dave airlie pam smb 1.1

dave airlie pam smb 2.0_rc4

redhat pam smb 1.1.6-2

dave airlie pam smb 1.1.5

dave airlie pam smb 1.1.6

dave airlie pam smb 1.1.1

dave airlie pam smb 1.1.2

redhat pam smb 1.1.6-5

Exploits

/* * Linux pam_lib_smb < 116 /bin/login exploit * by vertex * * Tested on Redhat 80, 90 * * * Advisory at * us2sambaorg/samba/ftp/pam_smb/ * * code based on : UC_loginc * SunOS 56,57,58 remote /bin/login root exploit * [mikecc/unixclan] * * ============================================================= * In ...