← Voltar para CVEs
CVE-2018-10919
N/ADescricao
The Samba Active Directory LDAP server was vulnerable to an information disclosure flaw because of missing access control checks. An authenticated attacker could use this flaw to extract confidential attribute values using LDAP search expressions. Samba versions before 4.6.16, 4.7.9 and 4.8.4 are vulnerable.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado8/22/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0
Produtos afetados
canonical:ubuntu_linuxdebian:debian_linuxsamba:samba
Fraquezas (CWE)
CWE-203CWE-200
Referencias
http://www.securityfocus.com/bid/105081(secalert@redhat.com)
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10919(secalert@redhat.com)
https://security.gentoo.org/glsa/202003-52(secalert@redhat.com)
https://security.netapp.com/advisory/ntap-20180814-0001/(secalert@redhat.com)
https://usn.ubuntu.com/3738-1/(secalert@redhat.com)
https://www.debian.org/security/2018/dsa-4271(secalert@redhat.com)
https://www.samba.org/samba/security/CVE-2018-10919.html(secalert@redhat.com)
http://www.securityfocus.com/bid/105081(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10919(af854a3a-2127-422b-91ae-364da2661108)
https://security.gentoo.org/glsa/202003-52(af854a3a-2127-422b-91ae-364da2661108)
https://security.netapp.com/advisory/ntap-20180814-0001/(af854a3a-2127-422b-91ae-364da2661108)
https://usn.ubuntu.com/3738-1/(af854a3a-2127-422b-91ae-364da2661108)
https://www.debian.org/security/2018/dsa-4271(af854a3a-2127-422b-91ae-364da2661108)
https://www.samba.org/samba/security/CVE-2018-10919.html(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.