Lucene search

K
cvelistRedhatCVELIST:CVE-2018-10918
HistoryAug 22, 2018 - 5:00 p.m.

CVE-2018-10918

2018-08-2217:00:00
CWE-476
redhat
www.cve.org
1

5.2 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:A/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H

6.8 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

75.2%

A null pointer dereference flaw was found in the way samba checked database outputs from the LDB database layer. An authenticated attacker could use this flaw to crash a samba server in an Active Directory Domain Controller configuration. Samba versions before 4.7.9 and 4.8.4 are vulnerable.

CNA Affected

[
  {
    "product": "samba",
    "vendor": "The Samba Team",
    "versions": [
      {
        "status": "affected",
        "version": "4.7.9"
      },
      {
        "status": "affected",
        "version": "4.8.4"
      }
    ]
  }
]

5.2 Medium

CVSS3

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:A/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H

6.8 Medium

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

75.2%