Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-3437

24
FAUCET Score

CVE-2022-3437 is a heap-based buffer overflow vulnerability in Samba's GSSAPI unwrap_des() and unwrap_des3() routines, specifically affecting Heimdal's DES and Triple-DES decryption. This flaw allows a remote attacker to trigger a denial of service (DoS) by sending specially crafted, small packets to affected Samba installations, including various Fedora and Samba versions. Rated as MEDIUM severity with a CVSS score of 6.5, it requires low privileges and network access for exploitation, but has no impact on confidentiality or integrity. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage, indicating a low immediate threat.

Impacted Technologies

VendorProductVersion(s)CPE
>= 4.0.0, < 4.15.11CPE matchmatch criteria
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
>= 4.16.0, < 4.16.6CPE matchmatch criteria
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
>= 4.17.0, < 4.17.2CPE matchmatch criteria
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
36CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
37CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

6.5MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
3.69%
Probability of exploitation in next 30 days
EPSS Percentile
88.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0369 is in the 96th percentile among its peer group of 21,974 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (5)

githubpatch availablevia llm_extracted
View patch
microsoftpatch availablevia msrc
Product: azl3 samba 4.18.3-1 on Azure Linux 3.0Fixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: 16864-17084Fixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 x64Fixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 ARMFixed in: 4.18.3-1

Vendor Advisories (4)

microsoft2024-Oct/CVE-2022-3437

CVE-2022-3437

Oct 8, 2024
microsoft2023-Jan/CVE-2022-3437Moderate

A heap-based buffer overflow vulnerability was found in Samba within the GSSAPI unwrap_des() and unwrap_des3() routines of Heimdal. The DES and Triple-DES decryption routines in the Heimdal GSSAPI library allow a length-limited write buffer overflow on malloc() allocated memory when presented with a maliciously small packet. This flaw allows a remote user to send specially crafted malicious data to the application possibly resulting in a denial of service (DoS) attack.

Jan 10, 2023
githubllm-github-a15388fff83176dcMEDIUM

AS-2022-016: Samba

Dec 27, 2022
redhatCVE-2022-3437Moderate

samba: heap buffer overflow in GSSAPI unwrap_des() and unwrap_des3() routines of Heimdal

Oct 25, 2022

References

access.redhat.com / security/cve/CVE-2022-3437
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingThird Party Advisory
lists.debian.org / debian-lts-announce/2024/04/msg00015.html
security.gentoo.org / glsa/202309-06
security.gentoo.org / glsa/202310-06
security.netapp.com / advisory/ntap-20230216-0008
samba.org / samba/security/CVE-2022-3437.html
Vendor Advisory
openwall.com / lists/oss-security/2023/02/08/1