vulnerability

Huawei EulerOS: CVE-2015-5370: samba security update

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Apr 24, 2016
Added
Nov 30, 2017
Modified
May 13, 2025

Description

Multiple flaws were found in Samba's DCE/RPC protocol implementation. A remote, authenticated attacker could use these flaws to cause a denial of service against the Samba server (high CPU load or a crash) or, possibly, execute arbitrary code with the permissions of the user running Samba (root). This flaw could also be used to downgrade a secure DCE/RPC connection by a man-in-the-middle attacker taking control of an Active Directory (AD) object and compromising the security of a Samba Active Directory Domain Controller (DC).

Solutions

huawei-euleros-2_0_sp1-upgrade-libldbhuawei-euleros-2_0_sp1-upgrade-libsmbclienthuawei-euleros-2_0_sp1-upgrade-libtallochuawei-euleros-2_0_sp1-upgrade-libtdbhuawei-euleros-2_0_sp1-upgrade-libteventhuawei-euleros-2_0_sp1-upgrade-libwbclienthuawei-euleros-2_0_sp1-upgrade-pytallochuawei-euleros-2_0_sp1-upgrade-python-tdbhuawei-euleros-2_0_sp1-upgrade-python-teventhuawei-euleros-2_0_sp1-upgrade-sambahuawei-euleros-2_0_sp1-upgrade-samba-clienthuawei-euleros-2_0_sp1-upgrade-samba-client-libshuawei-euleros-2_0_sp1-upgrade-samba-commonhuawei-euleros-2_0_sp1-upgrade-samba-common-libshuawei-euleros-2_0_sp1-upgrade-samba-common-toolshuawei-euleros-2_0_sp1-upgrade-samba-libshuawei-euleros-2_0_sp1-upgrade-samba-pythonhuawei-euleros-2_0_sp1-upgrade-samba-winbindhuawei-euleros-2_0_sp1-upgrade-samba-winbind-clientshuawei-euleros-2_0_sp1-upgrade-samba-winbind-moduleshuawei-euleros-2_0_sp1-upgrade-tdb-tools
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.