Samba
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*
- >= 4.0, < 4.16.11
- >= 4.0, < 4.17.10
- >= 4.0, < 4.18.5
A command injection vulnerability has been identified in Samba's WINS hook handling on Active Directory Domain Controllers. Unsanitized NetBIOS names from WINS registration packets are passed to a shell command and executed, enabling an unauthenticated network attacker to execute arbitrary commands with the privileges of the Samba process, often as root on a domain controller.
Exploitation of this vulnerability allows for unauthorized execution of commands on the server, potentially leading to a full system compromise.
Users can upgrade to Samba versions 4.23.2, 4.22.5, or 4.21.9, all of which include the necessary fix. Instructions for applying the patch can be found in the Samba security release announcements.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.