NULL pointer dereference in Samba - CVE-2018-1140
Published: August 14, 2018
Vulnerability identifier: #VU14337
CSH Severity: Low
CVSS v4: 7.1 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-1140
CWE-ID: CWE-476
Exploitation vector: Adjecent network
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to cause denial of service attack.
The vulnerability exists due to improper input validation when processing data from the LDB database layer. A remote attacker can trigger NULL pointer dereference error and cause the LDAP server and DNS server to crash.
Affected software
Samba
Gentoo Linux
Opensuse
Fedora
ldb (Alpine package)
samba (Alpine package)
libldb
samba
Gentoo Linux
Opensuse
Fedora
ldb (Alpine package)
samba (Alpine package)
libldb
samba
How to mitigate CVE-2018-1140
Update to version 4.8.4.
Samba - update to 4.8.4
ldb (Alpine package) - update to 1.3.0-r1
samba (Alpine package) - update to 4.8.4-r0
libldb - update to 1.4.0-3.fc28.1.3.5
samba - addressed in versions 4.7.9-0.fc27, 4.8.4-0.fc28
ldb (Alpine package) - update to 1.3.0-r1
samba (Alpine package) - update to 4.8.4-r0
libldb - update to 1.4.0-3.fc28.1.3.5
samba - addressed in versions 4.7.9-0.fc27, 4.8.4-0.fc28