CVE-2007-6015: Buffer Overflow
Stack-based buffer overflow in the sendmailslot function in nmbd in Samba 3.0.0 through 3.0.27a, when the "domain logons" option is enabled, allows remote attackers to execute arbitrary code via a GETDC mailslot request composed of a long GETDC string following an offset username in a SAMLOGON logon request.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6015?
CVE-2007-6015 is considered a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2007-6015?
To fix CVE-2007-6015, upgrade to a patched version of Samba that is not vulnerable, such as version 3.0.27 or later.
What versions of Samba are affected by CVE-2007-6015?
CVE-2007-6015 affects Samba versions from 3.0.0 to 3.0.27a when the 'domain logons' option is enabled.
What is the impact of CVE-2007-6015?
The impact of CVE-2007-6015 includes the ability for remote attackers to execute arbitrary code on vulnerable systems.
Is CVE-2007-6015 remotely exploitable?
Yes, CVE-2007-6015 is remotely exploitable, allowing attackers to target systems over a network.