ALT-PU-2019-1460-1
Closed vulnerabilities
Published: 2019-02-01
BDU:2019-01412
Уязвимость функции ldb_wildcard_compare компонента LDAP пакета программ сетевого взаимодействия Samba, позволяющая нарушителю вызвать отказ в обслуживании
Severity: MEDIUM (6.5)
Vector: AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References:
Published: 2019-03-06
Modified: 2024-11-21
Modified: 2024-11-21
CVE-2019-3824
A flaw was found in the way an LDAP search expression could crash the shared LDAP server process of a samba AD DC in samba before version 4.10. An authenticated user, having read permissions on the LDAP server, could use this flaw to cause denial of service.
Severity: MEDIUM (6.5)
Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
References:
- openSUSE-SU-2019:1163
- openSUSE-SU-2019:1163
- 107347
- 107347
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3824
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3824
- https://bugzilla.samba.org/show_bug.cgi?id=13773
- https://bugzilla.samba.org/show_bug.cgi?id=13773
- [debian-lts-announce] 20190301 [SECURITY] [DLA 1699-1] ldb security update
- [debian-lts-announce] 20190301 [SECURITY] [DLA 1699-1] ldb security update
- https://security.netapp.com/advisory/ntap-20190226-0001/
- https://security.netapp.com/advisory/ntap-20190226-0001/
- USN-3895-1
- USN-3895-1
- DSA-4397
- DSA-4397