Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0239

Опубликовано: 28 мая 2014
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged response packet that triggers a communication loop, a related issue to CVE-1999-0103.

РелизСтатусПримечание
devel

not-affected

2:4.1.8+dfsg-1ubuntu1
esm-infra-legacy/trusty

not-affected

2:4.1.6+dfsg-1ubuntu2.14.04.2
esm-infra/xenial

not-affected

2:4.1.8+dfsg-1ubuntu1
lucid

not-affected

precise

not-affected

precise/esm

not-affected

saucy

not-affected

trusty

released

2:4.1.6+dfsg-1ubuntu2.14.04.2
trusty/esm

not-affected

2:4.1.6+dfsg-1ubuntu2.14.04.2
upstream

released

4.0.18

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
saucy

ignored

end of life
trusty

DNE

trusty/esm

DNE

upstream

needs-triage

utopic

DNE

Показывать по

EPSS

Процентиль: 96%
0.25444
Средний

5 Medium

CVSS2

Связанные уязвимости

redhat
около 11 лет назад

The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged response packet that triggers a communication loop, a related issue to CVE-1999-0103.

nvd
около 11 лет назад

The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged response packet that triggers a communication loop, a related issue to CVE-1999-0103.

debian
около 11 лет назад

The internal DNS server in Samba 4.x before 4.0.18 does not check the ...

github
около 3 лет назад

The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged response packet that triggers a communication loop, a related issue to CVE-1999-0103.

CVSS3: 7.5
fstec
около 11 лет назад

Уязвимость программного обеспечения Samba, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 96%
0.25444
Средний

5 Medium

CVSS2