Related Vulnerabilities: CVE-2018-16851  

A NULL pointer de-reference issue has been found in samba from 4.0.0 up to and including 4.9.2, where a user able to read more than 256MB of LDAP entries can crash the Samba AD DC's LDAP server.

Severity Medium

Remote Yes

Type Denial of service

Description

A NULL pointer de-reference issue has been found in samba from 4.0.0 up to and including 4.9.2, where a user able to read more than 256MB of LDAP entries can crash the Samba AD DC's LDAP server.

AVG-823 samba 4.9.2-1 4.9.3-1 High Fixed

28 Nov 2018 ASA-201811-22 AVG-823 samba High multiple issues

https://www.samba.org/samba/security/CVE-2018-16851.html
https://bugzilla.samba.org/show_bug.cgi?id=13674
https://github.com/samba-team/samba/commit/f33f52c366f7cf140f470de44579dcb7eb832629