CVE-2014-3560
EPSS 56.4%
描述
NetBIOS name services daemon (nmbd) in Samba 4.0.x before 4.0.21 and 4.1.x before 4.1.11 allows remote attackers to execute arbitrary code via unspecified vectors that modify heap memory, involving a sizeof operation on an incorrect variable in the unstrcpy macro in string_wrappers.h.
如何修補 CVE-2014-3560
要修補 CVE-2014-3560,請將受影響套件升級到下列已修補版本。
- Debian/samba—升級至 2:4.1.11+dfsg-1 或更新版本
CVE-2014-3560 正在被利用嗎?
可能 — EPSS 為 56.4%,屬於高被利用機率區間,建議優先修補。
受影響套件(1)
- from 0, < 2:4.1.11+dfsg-1