Description
A denial of service vulnerability was discovered in Samba's LDAP server before versions 4.7.12, 4.8.7, and 4.9.3. A CNAME loop could lead to infinite recursion in the server. An unprivileged local attacker could create such an entry, leading to denial of service.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1607-1 | samba security update |
Debian DSA |
DSA-4345-1 | samba security update |
Ubuntu USN |
USN-3827-1 | Samba vulnerabilities |
Ubuntu USN |
USN-3827-2 | Samba vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T09:29:51.868Z
Reserved: 2018-07-27T00:00:00.000Z
Link: CVE-2018-14629
No data.
Status : Modified
Published: 2018-11-28T14:29:00.250
Modified: 2024-11-21T03:49:27.623
Link: CVE-2018-14629
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
Ubuntu USN