FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The last vuln.xml file processed by FreshPorts is:

nothing found there

List all Vulnerabilities, by package

List all Vulnerabilities, by date

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
1f6d97da-8f72-11eb-b3f1-005056a311d1samba -- Multiple Vulnerabilities

The Samba Team reports:

  • CVE-2020-27840: An anonymous attacker can crash the Samba AD DC LDAP server by sending easily crafted DNs as part of a bind request. More serious heap corruption is likely also possible.
  • CVE-2021-20277: User-controlled LDAP filter strings against the AD DC LDAP server may crash the LDAP server.

Discovery 2021-03-24
Entry 2021-03-28
samba411
le 4.11.15

samba412
lt 4.12.14

samba413
lt 4.13.7

samba414
lt 4.14.2

https://www.samba.org/samba/security/CVE-2020-27840.html
https://www.samba.org/samba/security/CVE-2021-20277.html
CVE-2020-27840
CVE-2021-20277
24ace516-fad7-11ea-8d8c-005056a311d1samba -- Unauthenticated domain takeover via netlogon

The Samba Team reports:

An unauthenticated attacker on the network can gain administrator access by exploiting a netlogon protocol flaw.


Discovery 2020-01-01
Entry 2020-09-20
samba410
lt 4.10.18

samba411
lt 4.11.13

samba412
lt 4.12.7

https://www.samba.org/samba/security/CVE-2020-1472.html
CVE-2020-1472
9ca85b7c-1b31-11eb-8762-005056a311d1samba -- Multiple Vulnerabilities

The Samba Team reports:

  • CVE-2020-14318: Missing handle permissions check in SMB1/2/3 ChangeNotify
  • CVE-2020-14323: Unprivileged user can crash winbind
  • CVE-2020-14383: An authenticated user can crash the DCE/RPC DNS with easily crafted records

Discovery 2020-10-29
Entry 2020-10-30
samba410
le 4.10.18

samba411
lt 4.11.15

samba412
lt 4.12.9

samba413
lt 4.13.1

https://www.samba.org/samba/security/CVE-2020-14318.html
https://www.samba.org/samba/security/CVE-2020-14323.html
https://www.samba.org/samba/security/CVE-2020-14383.html
CVE-2020-14318
CVE-2020-14323
CVE-2020-14383