Your submission was sent successfully! Close

CVE-2018-10918

Published: 14 August 2018

A null pointer dereference flaw was found in the way samba checked database outputs from the LDB database layer. An authenticated attacker could use this flaw to crash a samba server in an Active Directory Domain Controller configuration. Samba versions before 4.7.9 and 4.8.4 are vulnerable.

Priority

Medium

CVSS 3 base score: 6.5

Status

Package Release Status
samba
Launchpad, Ubuntu, Debian
Upstream
Released (4.7.9,4.8.4)
Ubuntu 18.04 LTS (Bionic Beaver)
Released (2:4.7.6+dfsg~ubuntu-0ubuntu2.2)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(2:4.3.11+dfsg-0ubuntu0.16.04.13)
Ubuntu 14.04 ESM (Trusty Tahr) Not vulnerable
(2:4.3.11+dfsg-0ubuntu0.14.04.14)