ZeroHour

CVE-2019-12436

CVSS 3.0
6.5 medium
EPSS
3%p86
Published
()
Modified
Description

Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using the paged search control. The attacker must have directory read access in order to attempt an exploit.

Vendors
sambacanonical
Products
samba, ubuntu linux
Weakness
CWE-476
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.