4
CVSSv2

CVE-2020-10730

Published: 07/07/2020 Updated: 07/11/2023
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

A NULL pointer dereference, or possible use-after-free flaw was found in Samba AD LDAP server in versions prior to 4.10.17, prior to 4.11.11 and prior to 4.12.4. Although some versions of Samba shipped with Red Hat Enterprise Linux do not support Samba in AD mode, the affected code is shipped with the libldb package. This flaw allows an authenticated user to possibly trigger a use-after-free or NULL pointer dereference. The highest threat from this vulnerability is to system availability.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

samba samba

redhat storage 3.0

opensuse leap 15.1

opensuse leap 15.2

fedoraproject fedora 31

debian debian linux 9.0

debian debian linux 10.0

Vendor Advisories

Multiple vulnerabilities have been discovered in ldb, a LDAP-like embedded database built on top of TDB CVE-2020-10730 Andrew Bartlett discovered a NULL pointer dereference and use-after-free flaw when handling ASQ and VLV LDAP controls and combinations with the LDAP paged_results feature CVE-2020-27840 Douglas Bagnall discovered ...
Synopsis Moderate: samba security update Type/Severity Security Advisory: Moderate Topic An update for samba is now available for Red Hat Gluster Storage 35 on Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring S ...
Synopsis Moderate: libldb security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Topic An update for libldb is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring Syst ...
Synopsis Moderate: samba security update Type/Severity Security Advisory: Moderate Topic An update for samba is now available for Red Hat Gluster Storage 35 for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring ...
Severity Unknown Remote Unknown Type Unknown Description AVG-1202 samba 4123-2 Medium Vulnerable ...