CVE-2018-1140 REJECTED

A missing input sanitization flaw was found in the implementation of LDP database used for the LDAP server. An attacker could use this flaw to cause a denial of service against a samba server, used as a Active Directory Domain Controller. All versions of Samba from 4.8.0 onwards are vulnerable

EPSS 14.50% · 94.4th percentile

Risk Scores

EPSS Score
14.50%
94.4th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSsamba0, 2:3.6.18-1ubuntu3, 2:4.0.10+dfsg-4ubuntu2
Ubuntu:16.04:LTSsamba0, 2:4.1.17+dfsg-4ubuntu2, 2:4.1.20+dfsg-1ubuntu1
Ubuntu:18.04:LTSsamba0, 2:4.6.7+dfsg-1ubuntu3, 2:4.7.1+dfsg-1ubuntu1

Timeline

References

Open in Interactive Console →