CVE-2020-14303
Published: 6 July 2020
A flaw was found in the AD DC NBT server in all Samba versions before 4.10.17, before 4.11.11 and before 4.12.4. A samba user could send an empty UDP packet to cause the samba server to crash.
Priority
CVSS 3 base score: 7.5
Status
Package | Release | Status |
---|---|---|
samba Launchpad, Ubuntu, Debian |
bionic |
Released
(2:4.7.6+dfsg~ubuntu-0ubuntu2.18)
|
eoan |
Ignored
(reached end-of-life)
|
|
focal |
Released
(2:4.11.6+dfsg-0ubuntu1.4)
|
|
precise |
Released
(2:3.6.25-0ubuntu0.12.04.21)
|
|
trusty |
Released
(2:4.3.11+dfsg-0ubuntu0.14.04.20+esm8)
|
|
upstream |
Needs triage
|
|
xenial |
Released
(2:4.3.11+dfsg-0ubuntu0.16.04.29)
|
|
Patches: upstream: https://github.com/samba-team/samba/commit/3cc0f1eeda5f133532dda31eef9fc1b394127e50 |