Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-12436

Опубликовано: 19 июн. 2019
Источник: nvd
CVSS3: 6.5
CVSS2: 4
EPSS Низкий

Описание

Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using the paged search control. The attacker must have directory read access in order to attempt an exploit.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
Версия от 4.10.0 (включая) до 4.10.5 (исключая)
Конфигурация 2
cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*

EPSS

Процентиль: 89%
0.0437
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 6 лет назад

Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using the paged search control. The attacker must have directory read access in order to attempt an exploit.

CVSS3: 6.5
redhat
больше 6 лет назад

Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using the paged search control. The attacker must have directory read access in order to attempt an exploit.

CVSS3: 6.5
debian
больше 6 лет назад

Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to ...

github
больше 3 лет назад

Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using the paged search control. The attacker must have directory read access in order to attempt an exploit.

CVSS3: 6.5
fstec
больше 6 лет назад

Уязвимость программного обеспечения Samba, связанная с ошибками разыменования указателей, позволяющая нарушителю вызвать отказ в обслуживании сервера AD DC LDAP

EPSS

Процентиль: 89%
0.0437
Низкий

6.5 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-476