A flaw was found when using samba as an Active Directory Domain Controller. Due to the way samba handles certain requests as an Active Directory Domain Controller LDAP server, an unauthorized user can cause a stack overflow leading to a denial of service. The highest threat from this vulnerability is to system availability. This issue affects all samba versions before 4.10.15, before 4.11.8 and before 4.12.2.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2463-1 | samba security update |
EUVD |
EUVD-2020-3135 | A flaw was found when using samba as an Active Directory Domain Controller. Due to the way samba handles certain requests as an Active Directory Domain Controller LDAP server, an unauthorized user can cause a stack overflow leading to a denial of service. The highest threat from this vulnerability is to system availability. This issue affects all samba versions before 4.10.15, before 4.11.8 and before 4.12.2. |
Ubuntu USN |
USN-4341-1 | Samba vulnerabilities |
Ubuntu USN |
USN-4341-2 | Samba vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T11:06:11.201Z
Reserved: 2020-03-20T00:00:00
Link: CVE-2020-10704
No data.
Status : Modified
Published: 2020-05-06T14:15:10.817
Modified: 2024-11-21T04:55:53.480
Link: CVE-2020-10704
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN