yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2022-1615
Component Overview
Vulnerability Overview
Name
CVE-2022-1615
Source
NVD (
link
)
Debian (
link
)
Description
In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.
CWEs
CWE-330
CWE-330
Published Date
Sep 1, 2022
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://bugzilla.samba.org/show_bug.cgi?id=15103
Exploit
https://gitlab.com/samba-team/samba/-/merge_requests/2644
Patch
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZTTOLTHUHOV4SHCHCB5TAA4FQVJAWN4P/
Mailing List
https://security.gentoo.org/glsa/202309-06
Third Party Advisory
https://bugzilla.samba.org/show_bug.cgi?id=15103
Exploit
https://gitlab.com/samba-team/samba/-/merge_requests/2644
Patch
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZTTOLTHUHOV4SHCHCB5TAA4FQVJAWN4P/
Mailing List
https://security.gentoo.org/glsa/202309-06
Third Party Advisory
Analysis
#
Affected Component
Analysis
samba
Exploitable
Vulnerability Rating
#
5.5
CVSSv31
Others affected components
#
Name
Project
Project Version
Version
Status
samba4
buildroot
2025.02.x
4.22.10
Not Affected
samba4
buildroot
master
4.24.3
Not Affected
samba4
openwrt
master
4.22.7-r3
Not Affected
samba4
openwrt
openwrt-25.12
4.22.7-r3
Not Affected
samba
yocto
master
4.23.5
Not Affected
samba
yocto
scarthgap
4.19.9
Not Affected