samba buffer overflow
Published Nov 16, 2007
9.3
HIGHCVSS 2.0
EPSS 5.89%
Description
Stack-based buffer overflow in nmbd in Samba 3.0.0 through 3.0.26a, when configured as a Primary or Backup Domain controller, allows remote attackers to have an unknown impact via crafted GETDC mailslot requests, related to handling of GETDC logon server requests.
Affected products
No data.
- 3.0.0
- 3.0.1
- 3.0.2
- 3.0.2a
- 3.0.3
- 3.0.4
- 3.0.4
- 3.0.5
- 3.0.6
- 3.0.7
- 3.0.8
- 3.0.9
- 3.0.10
- 3.0.11
- 3.0.12
- 3.0.13
- 3.0.14
- 3.0.14a
- 3.0.15
- 3.0.16
- 3.0.17
- 3.0.18
- 3.0.19
- 3.0.20
- 3.0.20a
- 3.0.20b
- 3.0.21
- 3.0.21a
- 3.0.21b
- 3.0.21c
- 3.0.22
- 3.0.23
- 3.0.23a
- 3.0.23b
- 3.0.23c
- 3.0.23d
- 3.0.24
- 3.0.25
- 3.0.25
- 3.0.25
- 3.0.25
- 3.0.25
- 3.0.25
- 3.0.25a
- 3.0.25b
- 3.0.25c
- 3.0.26
- 3.0.26a
No data.
Red Hat Enterprise Linux 2.1
samba-0:2.2.12-1.21as.8.1
Fixed · RHSA-2007:1013
Red Hat Enterprise Linux 3
samba-0:3.0.9-1.3E.14.1
Fixed · RHSA-2007:1013
Red Hat Enterprise Linux 4
samba-0:3.0.25b-1.el4_6.2
Fixed · RHSA-2007:1016
Red Hat Enterprise Linux 5
samba-0:3.0.25b-1.el5_1.2
Fixed · RHSA-2007:1017
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 2.1 | samba-0:2.2.12-1.21as.8.1 | Fixed | RHSA-2007:1013 |
| Red Hat Enterprise Linux 3 | samba-0:3.0.9-1.3E.14.1 | Fixed | RHSA-2007:1013 |
| Red Hat Enterprise Linux 4 | samba-0:3.0.25b-1.el4_6.2 | Fixed | RHSA-2007:1016 |
| Red Hat Enterprise Linux 5 | samba-0:3.0.25b-1.el5_1.2 | Fixed | RHSA-2007:1017 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
No CVSS v3.1 score for this CVE.
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:N/C:C/I:C/A:C
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (22 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 5.89% (0.05888) | 93.00th | v5 (v2026.06.15) |
| Jun 15, 2026 | 5.89% (0.05888) | 92.25th | v5 (v2026.06.15) |
| Dec 1, 2025 | 21.48% (0.21484) | 95.53th | v4 (v2025.03.14) |
| Mar 30, 2025 | 27.40% (0.27399) | 95.99th | v4 (v2025.03.14) |
| Mar 29, 2025 | 13.04% (0.13042) | 90.12th | v4 (v2025.03.14) |
| Mar 21, 2025 | 27.40% (0.27399) | 96.01th | v4 (v2025.03.14) |
| Mar 17, 2025 | 30.27% (0.30271) | 96.28th | v4 (v2025.03.14) |
| Dec 17, 2024 | 47.36% (0.47355) | 97.54th | v3 (v2023.03.01) |
| Dec 12, 2024 | 12.36% (0.12359) | 95.66th | v3 (v2023.03.01) |
| Oct 27, 2024 | 13.30% (0.13302) | 95.70th | v3 (v2023.03.01) |
| Aug 12, 2024 | 11.19% (0.11185) | 95.24th | v3 (v2023.03.01) |
| Apr 19, 2024 | 5.94% (0.05940) | 93.36th | v3 (v2023.03.01) |
| Dec 29, 2023 | 4.52% (0.04518) | 91.61th | v3 (v2023.03.01) |
| Oct 17, 2023 | 3.24% (0.03239) | 90.12th | v3 (v2023.03.01) |
| Sep 12, 2023 | 4.37% (0.04373) | 91.33th | v3 (v2023.03.01) |
| Apr 21, 2023 | 3.13% (0.03133) | 89.62th | v3 (v2023.03.01) |
| Mar 7, 2023 | 2.54% (0.02540) | 88.51th | v3 (v2023.03.01) |
| Mar 6, 2023 | 4.36% (0.04358) | 88.02th | v2 (v2022.01.01) |
| Feb 13, 2023 | 4.36% (0.04358) | 87.63th | v2 (v2022.01.01) |
| Feb 3, 2023 | 2.69% (0.02686) | 82.44th | v2 (v2022.01.01) |
| Apr 1, 2022 | 4.36% (0.04358) | 86.83th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.36% (0.04358) | 70.59th | v2 (v2022.01.01) |
References (54)
- http://docs.info.apple.com/article.html?artnum=307179 x_refsource_CONFIRM
- http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.html vendor-advisoryx_refsource_APPLE
- http://lists.vmware.com/pipermail/security-announce/2008/000002.html mailing-listx_refsource_MLIST
- http://marc.info/?l=bugtraq&m=120524782005154&w=2 vendor-advisoryx_refsource_HP
- http://secunia.com/advisories/27450 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://secunia.com/advisories/27679 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27682 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27691 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27701 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27720 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27731 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27787 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/27927 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/28136 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/28368 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/29341 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/30484 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/30736 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/30835 third-party-advisoryx_refsource_SECUNIA
- http://securitytracker.com/id?1018954 vdb-entryx_refsource_SECTRACK
- http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.447739 vendor-advisoryx_refsource_SLACKWARE
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-237764-1 vendor-advisoryx_refsource_SUNALERT
- http://us1.samba.org/samba/security/CVE-2007-4572.html x_refsource_CONFIRMPatch
- http://www.debian.org/security/2007/dsa-1409 vendor-advisoryx_refsource_DEBIAN
- http://www.gentoo.org/security/en/glsa/glsa-200711-29.xml vendor-advisoryx_refsource_GENTOO
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:224 vendor-advisoryx_refsource_MANDRIVA
- http://www.novell.com/linux/security/advisories/2007_65_samba.html vendor-advisoryx_refsource_SUSE
- http://www.redhat.com/support/errata/RHSA-2007-1013.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2007-1016.html vendor-advisoryx_refsource_REDHAT
- http://www.redhat.com/support/errata/RHSA-2007-1017.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/archive/1/485936/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/archive/1/486859/100/0/threaded mailing-listx_refsource_BUGTRAQ
- http://www.securityfocus.com/bid/26454 vdb-entryx_refsource_BID
- http://www.ubuntu.com/usn/usn-544-2 vendor-advisoryx_refsource_UBUNTU
- http://www.ubuntu.com/usn/usn-617-1 vendor-advisoryx_refsource_UBUNTU
- http://www.us-cert.gov/cas/techalerts/TA07-352A.html third-party-advisoryx_refsource_CERTUS Government Resource
- http://www.vmware.com/security/advisories/VMSA-2008-0001.html x_refsource_CONFIRM
- http://www.vupen.com/english/advisories/2007/3869 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2007/4238 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2008/0064 vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2008/0859/references vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2008/1712/references vdb-entryx_refsource_VUPEN
- http://www.vupen.com/english/advisories/2008/1908 vdb-entryx_refsource_VUPEN
- http://www11.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c01475657 vendor-advisoryx_refsource_HP
- https://access.redhat.com/security/cve/CVE-2007-4572 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=294631 Issue Tracking
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38501 vdb-entryx_refsource_XF
- https://issues.rpath.com/browse/RPL-1894 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2007-4572
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11132 vdb-entrysignaturex_refsource_OVAL
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5643 vdb-entrysignaturex_refsource_OVAL
- https://usn.ubuntu.com/544-1/ vendor-advisoryx_refsource_UBUNTU
- https://www.cve.org/CVERecord?id=CVE-2007-4572
- https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00472.html vendor-advisoryx_refsource_FEDORA
Change history (0)
No recorded changes yet.