vulnerability
Samba CVE-2020-10700: CVE-2020-10700 and CVE-2020-10704. Please see announcements for details.
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
3 | (AV:N/AC:H/Au:N/C:N/I:N/A:P) | 2020-05-04 | 2020-06-03 | 2020-06-08 |
Severity
3
CVSS
(AV:N/AC:H/Au:N/C:N/I:N/A:P)
Published
2020-05-04
Added
2020-06-03
Modified
2020-06-08
Description
A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Paged Results' control is combined with the 'ASQ' control. A malicious user in a samba AD could use this flaw to cause denial of service. This issue affects all samba versions before 4.10.15, before 4.11.8 and before 4.12.2.
Solution(s)
samba-upgrade-4_10_15samba-upgrade-4_11_8samba-upgrade-4_12_2

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.