Description
There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and all samba 4.11.x versions before 4.11.5, essentially due to a call to realloc() while other local variables still point at the original buffer.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3563-1 | samba security update |
EUVD |
EUVD-2019-8965 | There is a use-after-free issue in all samba 4.9.x versions before 4.9.18, all samba 4.10.x versions before 4.10.12 and all samba 4.11.x versions before 4.11.5, essentially due to a call to realloc() while other local variables still point at the original buffer. |
Ubuntu USN |
USN-4244-1 | Samba vulnerabilities |
References
History
Tue, 14 Jan 2025 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:synology:diskstation_manager:6.2:*:*:*:*:*:*:* |
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-05T02:16:47.118Z
Reserved: 2019-11-27T00:00:00.000Z
Link: CVE-2019-19344
No data.
Status : Modified
Published: 2020-01-21T18:15:12.937
Modified: 2025-01-14T19:29:55.853
Link: CVE-2019-19344
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN