Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-1140

Опубликовано: 22 авг. 2018
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 3.3
CVSS3: 6.5

Описание

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

РелизСтатусПримечание
bionic

not-affected

2:4.7.6+dfsg~ubuntu-0ubuntu2
devel

not-affected

2:4.7.6+dfsg~ubuntu-0ubuntu3
esm-infra-legacy/trusty

not-affected

2:4.3.11+dfsg-0ubuntu0.14.04.14
esm-infra/bionic

not-affected

2:4.7.6+dfsg~ubuntu-0ubuntu2
esm-infra/xenial

not-affected

2:4.3.11+dfsg-0ubuntu0.16.04.13
precise/esm

not-affected

trusty

not-affected

2:4.3.11+dfsg-0ubuntu0.14.04.14
trusty/esm

not-affected

2:4.3.11+dfsg-0ubuntu0.14.04.14
upstream

released

4.8.4
xenial

not-affected

2:4.3.11+dfsg-0ubuntu0.16.04.13

Показывать по

Ссылки на источники

EPSS

Процентиль: 95%
0.17346
Средний

3.3 Low

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 7 лет назад

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

CVSS3: 6.5
nvd
больше 7 лет назад

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

CVSS3: 6.5
debian
больше 7 лет назад

A missing input sanitization flaw was found in the implementation of L ...

CVSS3: 6.5
github
больше 3 лет назад

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

CVSS3: 6.5
fstec
больше 7 лет назад

Уязвимость компонента LDAP-сервера программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 95%
0.17346
Средний

3.3 Low

CVSS2

6.5 Medium

CVSS3