ZeroHour

CVE-2018-14629

PoC
CVSS 3.0
6.5 medium
EPSS
5%p92
Published
()
Modified
Description

A denial of service vulnerability was discovered in Samba's LDAP server before versions 4.7.12, 4.8.7, and 4.9.3. A CNAME loop could lead to infinite recursion in the server. An unprivileged local attacker could create such an entry, leading to denial of service.

Vendors
sambacanonicaldebian
Products
samba, ubuntu linux, debian linux
Weakness
CWE-400, CWE-835
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.