Security Bulletin
This security bulletin contains one medium risk vulnerability.
EUVDB-ID: #VU78577
Risk: Medium
CVSSv3.1: 5.7 [CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L/E:U/RL:O/RC:C]
CVE-ID: CVE-2022-2127
CWE-ID:
CWE-125 - Out-of-bounds read
Exploit availability: No
DescriptionThe vulnerability allows a remote attacker to gain access to sensitive information or perform denial of service (DoS) attack.
The vulnerability exists due to a boundary condition in winbindd_pam_auth_crap.c in winbind AUTH_CRAP when performing NTLM authentication. A remote attacker can trigger an out-of-bounds read error and gain access to sensitive information or crash the server.
Update the affected package samba to the latest version.
Vulnerable software versionsSUSE Linux Enterprise High Availability Extension 12: SP4
SUSE Linux Enterprise Server for SAP Applications 12: SP4
SUSE Linux Enterprise Server 12 SP4 LTSS: 12-SP4
SUSE Linux Enterprise Server 12 SP4 ESPOS: 12-SP4
SUSE Linux Enterprise Server 12: SP4
SUSE Linux Enterprise High Performance Computing 12: SP4
SUSE OpenStack Cloud Crowbar: 9
SUSE OpenStack Cloud: 9
ctdb: before 4.6.16+git.393.97432483687-3.81.1
ctdb-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
samba-doc: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc-binding0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsamba-util0: before 4.6.16+git.393.97432483687-3.81.1
libtevent-util0: before 4.6.16+git.393.97432483687-3.81.1
libndr-krb5pac0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libwbclient0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsmbldap0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc-binding0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-winbind-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamdb0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr-krb5pac0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbconf0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbclient0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbldap0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-libs-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libnetapi0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-client-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libnetapi0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsamba-util0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbclient0: before 4.6.16+git.393.97432483687-3.81.1
libsamba-credentials0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-client-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-passdb0: before 4.6.16+git.393.97432483687-3.81.1
samba-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsamba-credentials0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc-binding0: before 4.6.16+git.393.97432483687-3.81.1
libnetapi0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-passdb0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
samba-winbind-32bit: before 4.6.16+git.393.97432483687-3.81.1
libwbclient0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-util0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libndr-standard0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
samba: before 4.6.16+git.393.97432483687-3.81.1
libndr-nbt0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsamba-passdb0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-credentials0: before 4.6.16+git.393.97432483687-3.81.1
libndr-nbt0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libwbclient0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc-binding0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc0-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-libs-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamdb0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
samba-winbind-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsamdb0: before 4.6.16+git.393.97432483687-3.81.1
samba-libs-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libnetapi0: before 4.6.16+git.393.97432483687-3.81.1
libsmbclient0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libndr0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libtevent-util0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libwbclient0: before 4.6.16+git.393.97432483687-3.81.1
samba-debugsource: before 4.6.16+git.393.97432483687-3.81.1
libsamba-util0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-libs: before 4.6.16+git.393.97432483687-3.81.1
libtevent-util0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-client: before 4.6.16+git.393.97432483687-3.81.1
libsamba-passdb0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr-nbt0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr-krb5pac0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-errors0: before 4.6.16+git.393.97432483687-3.81.1
samba-client-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr0: before 4.6.16+git.393.97432483687-3.81.1
libndr0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libtevent-util0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libdcerpc0: before 4.6.16+git.393.97432483687-3.81.1
libndr-standard0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-hostconfig0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-errors0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbconf0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libndr-standard0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbldap0: before 4.6.16+git.393.97432483687-3.81.1
libsmbldap0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-credentials0-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr-standard0: before 4.6.16+git.393.97432483687-3.81.1
libsamba-hostconfig0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libndr-nbt0: before 4.6.16+git.393.97432483687-3.81.1
libsamba-errors0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsmbconf0: before 4.6.16+git.393.97432483687-3.81.1
libsamdb0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-hostconfig0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libsamba-errors0-debuginfo: before 4.6.16+git.393.97432483687-3.81.1
libndr-krb5pac0: before 4.6.16+git.393.97432483687-3.81.1
libsmbconf0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
samba-winbind: before 4.6.16+git.393.97432483687-3.81.1
libsmbclient0-debuginfo-32bit: before 4.6.16+git.393.97432483687-3.81.1
libsamba-hostconfig0: before 4.6.16+git.393.97432483687-3.81.1
CPE2.3http://www.suse.com/support/update/announcement/2023/suse-su-20232887-1/
Q & A
Can this vulnerability be exploited remotely?
Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.
Is there known malware, which exploits this vulnerability?
No. We are not aware of malware exploiting this vulnerability.