• CVE-2022-32742

发布时间: 2022年8月5日

修改时间: 2024年10月31日

概要

A flaw was found in Samba. Some SMB1 write requests were not correctly range-checked to ensure the client had sent enough data to fulfill the write, allowing server memory contents to be written into the file (or printer) instead of client-supplied data. The client cannot control the area of the server memory written to the file (or printer).

CVSS v3 指标

NVD openEuler
Confidentiality Low Low
Attack Vector Network Network
CVSS评分 4.3 4.3
Attack Complexity Low Low
Privileges Required Low Low
Scope Unchanged Unchanged
Integrity None None
User Interaction None None
Availability None None

安全公告

公告名 概要 发布时间
KylinSec-SA-2022-1925 samba security update 2022年8月5日
KylinSec-SA-2022-1947 samba security update 2022年8月11日
KylinSec-SA-2022-1948 samba security update 2022年8月11日

影响产品

产品 状态
KY3.4-4A samba Fixed
KY3.4-5 samba Fixed
KY3.5.1 samba Fixed