6.5 Medium
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
0.001 Low
EPSS
Percentile
33.5%
samba is vulnerable to Denial of Service (DoS). An attacker could exploit this vulnerability by sending a series of malicious RPC requests to a vulnerable Samba AD DC server. This could cause the server to start multiple incompatible RPC listeners, which would disrupt the AD DC service. This could prevent users from logging in to the domain or from accessing domain resources.
access.redhat.com/security/cve/CVE-2023-42670
bugzilla.redhat.com/show_bug.cgi?id=2241885
bugzilla.samba.org/show_bug.cgi?id=15473
lists.fedoraproject.org/archives/list/[email protected]/message/ZUMVALLFFDFC53JZMUWA6HPD7HUGAP5I/
security-tracker.debian.org/tracker/CVE-2023-42670
security.netapp.com/advisory/ntap-20231124-0002/
www.samba.org/samba/security/CVE-2023-42670.html