Lucene search

K
vulnrichmentRedhatVULNRICHMENT:CVE-2020-14323
HistoryOct 29, 2020 - 12:00 a.m.

CVE-2020-14323

2020-10-2900:00:00
CWE-170
redhat
github.com
7
samba
winbind
null pointer
denial of service

AI Score

5.4

Confidence

High

EPSS

0.001

Percentile

25.3%

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

A null pointer dereference flaw was found in samba’s Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1. A local user could use this flaw to crash the winbind service causing denial of service.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "Samba",
    "versions": [
      {
        "status": "affected",
        "version": "All samba versions before 4.11.15, before 4.12.9 and before 4.13.1"
      }
    ]
  }
]