CVE-2003-0686

PAM SMB <1.1.6 - RCE

Title source: llm
STIX 2.1

Description

Buffer overflow in PAM SMB module (pam_smb) 1.1.6 and earlier, when authenticating to a remote service, allows remote attackers to execute arbitrary code.

Exploits (1)

exploitdb WORKING POC VERIFIED
by vertex · cremotelinux
https://www.exploit-db.com/exploits/89

Scores

EPSS 0.4933
EPSS Percentile 97.8%

Details

Status published
Products (11)
dave_airlie/pam_smb 1.1
dave_airlie/pam_smb 1.1.1
dave_airlie/pam_smb 1.1.2
dave_airlie/pam_smb 1.1.3
dave_airlie/pam_smb 1.1.4
dave_airlie/pam_smb 1.1.5
dave_airlie/pam_smb 1.1.6
dave_airlie/pam_smb 2.0_rc4
redhat/pam_smb 1.1.6-2 (2 CPE variants)
redhat/pam_smb 1.1.6-5
... and 1 more
Published Oct 20, 2003
Tracked Since Feb 18, 2026