Thursday, June 20, 2019

Vuln: Samba CVE-2019-12435 Remote Denial of Service Vulnerability



Samba is prone to a remote denial-of-service vulnerability.

An attacker can exploit this issue to cause the application to crash, denying service to legitimate users.

Samba versions prior to 4.9.9 and 4.10.5 are vulnerable.
exploit



Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: vuldb@securityfocus.com.
solution



Solution:
Updates are available. Please see the references or vendor advisory for more information.

info



Bugtraq ID: 108825
Class: Failure to Handle Exceptional Conditions
CVE: CVE-2019-12435
Remote: Yes
Local: No
Published: Jun 19 2019 12:00AM
Updated: Jun 19 2019 12:00AM
Credit: Coverity.
Vulnerable: Ubuntu Ubuntu Linux 19.04
Samba Samba 4.10.4
Samba Samba 4.10.3
Samba Samba 4.10.2
Samba Samba 4.10.1
Samba Samba 4.9.8
Samba Samba 4.9.7
Samba Samba 4.9.6
Samba Samba 4.9.5
Samba Samba 4.9.4
Samba Samba 4.9.3
Samba Samba 4.9.2
Samba Samba 4.9.1
Samba Samba 4.9
Samba Samba 4.10
Not Vulnerable: Samba Samba 4.10.5
Samba Samba 4.9.9
references



from SecurityFocus Vulnerabilities http://bit.ly/2IufrOx

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.