NULL pointer dereference in Samba - CVE-2018-1140

 

NULL pointer dereference in Samba - CVE-2018-1140

Published: August 14, 2018


Vulnerability identifier: #VU14337
CSH Severity: Low
CVSS v4: 7.1 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-1140
CWE-ID: CWE-476
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to cause denial of service attack.
The vulnerability exists due to improper input validation when processing data from the LDB database layer. A remote attacker can trigger NULL pointer dereference error and cause the LDAP server and DNS server to crash.



Affected software

Samba
Gentoo Linux
Opensuse
Fedora
ldb (Alpine package)
samba (Alpine package)
libldb
samba

How to mitigate CVE-2018-1140

Update to version 4.8.4.

Samba - update to 4.8.4
ldb (Alpine package) - update to 1.3.0-r1
samba (Alpine package) - update to 4.8.4-r0
libldb - update to 1.4.0-3.fc28.1.3.5
samba - addressed in versions 4.7.9-0.fc27, 4.8.4-0.fc28

External References

Related Security Bulletins