Samba 4.10.x before 4.10.5 has a NULL pointer dereference, leading to an AD DC LDAP server Denial of Service. This is related to an attacker using the paged search control. The attacker must have directory read access in order to attempt an exploit.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Samba | Samba | 4.10.0 (including) | 4.10.5 (excluding) |
Samba | Ubuntu | devel | * |
Samba | Ubuntu | disco | * |
Samba | Ubuntu | trusty | * |
Samba | Ubuntu | upstream | * |