ALT-PU-2020-1927-1
Closed vulnerabilities
BDU:2020-04036
Уязвимость сервера LDAP пакета программ сетевого взаимодействия Samba, настроенного как контроллер домена Active Directory, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2021-01208
Уязвимость LDAP-сервера samba AD DC, связанная с ошибками при обработке элементов управления «Paged Results» и «ASQ», позволяющая нарушителю вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2020-10700
A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Paged Results' control is combined with the 'ASQ' control. A malicious user in a samba AD could use this flaw to cause denial of service. This issue affects all samba versions before 4.10.15, before 4.11.8 and before 4.12.2.
- openSUSE-SU-2020:1023
- openSUSE-SU-2020:1313
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10700
- FEDORA-2020-9cf0b1c8f1
- FEDORA-2020-c931060ab7
- FEDORA-2020-e244c98af5
- GLSA-202007-15
- https://www.samba.org/samba/security/CVE-2020-10700.html
- openSUSE-SU-2020:1023
- https://www.samba.org/samba/security/CVE-2020-10700.html
- GLSA-202007-15
- FEDORA-2020-e244c98af5
- FEDORA-2020-c931060ab7
- FEDORA-2020-9cf0b1c8f1
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10700
- openSUSE-SU-2020:1313
Modified: 2024-11-21
CVE-2020-10704
A flaw was found when using samba as an Active Directory Domain Controller. Due to the way samba handles certain requests as an Active Directory Domain Controller LDAP server, an unauthorized user can cause a stack overflow leading to a denial of service. The highest threat from this vulnerability is to system availability. This issue affects all samba versions before 4.10.15, before 4.11.8 and before 4.12.2.
- openSUSE-SU-2020:1023
- openSUSE-SU-2020:1313
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10704
- [debian-lts-announce] 20201123 [SECURITY] [DLA 2463-1] samba security update
- FEDORA-2020-9cf0b1c8f1
- FEDORA-2020-e244c98af5
- GLSA-202007-15
- https://www.samba.org/samba/security/CVE-2020-10704.html
- openSUSE-SU-2020:1023
- https://www.samba.org/samba/security/CVE-2020-10704.html
- GLSA-202007-15
- FEDORA-2020-e244c98af5
- FEDORA-2020-9cf0b1c8f1
- [debian-lts-announce] 20201123 [SECURITY] [DLA 2463-1] samba security update
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10704
- openSUSE-SU-2020:1313