CVE-2007-5398: Buffer Overflow
Stack-based buffer overflow in the replynetbiospacket function in nmbd/nmbdpackets.c in nmbd in Samba 3.0.0 through 3.0.26a, when operating as a WINS server, allows remote attackers to execute arbitrary code via crafted WINS Name Registration requests followed by a WINS Name Query request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5398?
CVE-2007-5398 has been assigned a medium severity rating due to its potential to allow remote code execution.
How do I fix CVE-2007-5398?
To fix CVE-2007-5398, update your Samba installation to version 3.0.26b or higher.
What software is affected by CVE-2007-5398?
CVE-2007-5398 affects Samba versions from 3.0.0 through 3.0.26a when configured as a WINS server.
What type of vulnerability is CVE-2007-5398?
CVE-2007-5398 is classified as a stack-based buffer overflow vulnerability.
Can attackers exploit CVE-2007-5398 remotely?
Yes, attackers can exploit CVE-2007-5398 remotely through crafted WINS Name Registration requests.