Your submission was sent successfully! Close

You have successfully unsubscribed! Close

CVE-2020-14303

Published: 6 July 2020

A flaw was found in the AD DC NBT server in all Samba versions before 4.10.17, before 4.11.11 and before 4.12.4. A samba user could send an empty UDP packet to cause the samba server to crash.

Priority

Medium

CVSS 3 base score: 7.5

Status

Package Release Status
samba
Launchpad, Ubuntu, Debian
bionic
Released (2:4.7.6+dfsg~ubuntu-0ubuntu2.18)
eoan Ignored
(reached end-of-life)
focal
Released (2:4.11.6+dfsg-0ubuntu1.4)
precise
Released (2:3.6.25-0ubuntu0.12.04.21)
trusty
Released (2:4.3.11+dfsg-0ubuntu0.14.04.20+esm8)
upstream Needs triage

xenial
Released (2:4.3.11+dfsg-0ubuntu0.16.04.29)
Patches:
upstream: https://github.com/samba-team/samba/commit/3cc0f1eeda5f133532dda31eef9fc1b394127e50