ZeroHour

CVE-2018-10918

CVSS 3.0
6.5 medium
EPSS
3%p84
Published
()
Modified
Description

A null pointer dereference flaw was found in the way samba checked database outputs from the LDB database layer. An authenticated attacker could use this flaw to crash a samba server in an Active Directory Domain Controller configuration. Samba versions before 4.7.9 and 4.8.4 are vulnerable.

Vendors
canonicalsamba
Products
ubuntu linux, samba
Weakness
CWE-476
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.