7.5
CVSSv3

CVE-2015-5330

Published: 29/12/2015 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

ldb prior to 1.1.24, as used in the AD LDAP server in Samba 4.x prior to 4.1.22, 4.2.x prior to 4.2.7, and 4.3.x prior to 4.3.3, mishandles string lengths, which allows remote malicious users to obtain sensitive information from daemon heap memory by sending crafted packets and then reading (1) an error message or (2) a database value.

Vulnerable Product Search on Vulmon Subscribe to Product

samba samba 4.2.6

samba samba 4.1.9

samba samba 4.0.14

samba samba 4.0.24

samba samba 4.1.16

samba samba 4.1.12

samba samba 4.0.2

samba samba 4.1.14

samba samba 4.0.22

samba samba 4.2.1

samba samba 4.0.11

samba samba 4.1.7

samba samba 4.0.3

samba samba 4.3.0

samba samba 4.0.21

samba samba 4.0.16

samba samba 4.1.8

samba samba 4.2.4

samba samba 4.0.13

samba samba 4.2.0

samba samba 4.1.5

samba samba 4.1.6

samba samba 4.0.17

samba samba 4.0.6

samba samba 4.0.19

samba samba 4.1.11

samba samba 4.0.10

samba samba 4.1.4

samba samba 4.1.20

samba samba 4.0.7

samba samba 4.1.0

samba samba 4.1.19

samba samba 4.0.1

samba samba 4.0.8

samba samba 4.2.2

samba samba 4.1.10

samba samba 4.3.1

samba samba 4.1.15

samba samba 4.1.17

samba samba 4.3.2

samba samba 4.0.0

samba samba 4.2.3

samba samba 4.0.5

samba samba 4.1.2

samba samba 4.1.3

samba samba 4.0.18

samba samba 4.1.21

samba samba 4.1.1

samba samba 4.0.23

samba samba 4.1.13

samba samba 4.2.5

samba samba 4.0.12

samba samba 4.0.4

samba samba 4.0.15

samba samba 4.0.20

samba samba 4.1.18

samba samba 4.0.9

Vendor Advisories

Synopsis Moderate: libldb security update Type/Severity Security Advisory: Moderate Topic Updated libldb packages that fix two security issues are now available forRed Hat Enterprise Linux 6 and 7Red Hat Product Security has rated this update as having Moderate securityimpact Common Vulnerability Scoring ...
Synopsis Moderate: samba security update Type/Severity Security Advisory: Moderate Topic Updated samba packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having Moderate securityimpact Common Vulnerability Scoring Sys ...
Synopsis Moderate: samba4 security update Type/Severity Security Advisory: Moderate Topic Updated samba4 packages that fix multiple security issues are now availablefor Red Hat Enterprise Linux 6Red Hat Product Security has rated this update as having Moderate securityimpact Common Vulnerability Scoring S ...
Synopsis Moderate: libldb security update Type/Severity Security Advisory: Moderate Topic Updated libldb packages that fix two security issues are now available forRed Hat Gluster Storage 31Red Hat Product Security has rated this update as having Moderate securityimpact Common Vulnerability Scoring Syste ...
Several security issues were fixed in Samba ...
USN-2855-1 introduced a regression in Samba ...
Several security issues were fixed in ldb ...
Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix The Common Vulnerabilities and Exposures project identifies the following issues: CVE-2015-3223 Thilo Uttendorfer of Linux Information Systems AG discovered that a malicious request can cause the Samba LDAP server to hang, spinning ...
A missing access control flaw was found in Samba A remote, authenticated attacker could use this flaw to view the current snapshot on a Samba share, despite not having DIRECTORY_LIST access rights An access flaw was found in the way Samba verified symbolic links when creating new files on a Samba share A remote attacker could exploit this flaw t ...
A denial of service flaw was found in the ldb_wildcard_compare() function of libldb A remote attacker could send a specially crafted packet that, when processed by an application using libldb (for example the AD LDAP server in Samba), would cause that application to consume an excessive amount of memory and crash A memory-read flaw was found in t ...
A memory-read flaw was found in the way the libldb library processed LDB DN records with a null byte An authenticated, remote attacker could use this flaw to read heap-memory pages from the server ...

References

CWE-200https://www.samba.org/samba/security/CVE-2015-5330.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=1281326http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.htmlhttp://www.securityfocus.com/bid/79734http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00047.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00048.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00042.htmlhttp://www.ubuntu.com/usn/USN-2855-2http://www.ubuntu.com/usn/USN-2855-1http://www.securitytracker.com/id/1034493http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00020.htmlhttp://www.debian.org/security/2016/dsa-3433http://www.ubuntu.com/usn/USN-2856-1http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-01/msg00017.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00019.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00033.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00032.htmlhttps://security.gentoo.org/glsa/201612-47https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=f36cb71c330a52106e36028b3029d952257baf15https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=ba5dbda6d0174a59d221c45cca52ecd232820d48https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=a118d4220ed85749c07fb43c1229d9e2fecbea6bhttps://git.samba.org/?p=samba.git%3Ba=commit%3Bh=0454b95657846fcecf0f51b6f1194faac02518bdhttps://git.samba.org/?p=samba.git%3Ba=commit%3Bh=538d305de91e34a2938f5f219f18bf0e1918763fhttps://git.samba.org/?p=samba.git%3Ba=commit%3Bh=7f51ec8c4ed9ba1f53d722e44fb6fb3cde933b72https://nvd.nist.govhttps://access.redhat.com/errata/RHSA-2016:0009https://usn.ubuntu.com/2855-1/