CVE-2020-10700Use After Free in Samba

CWE-416Use After Free11 documents8 sources
Severity
5.3MEDIUMNVD
EPSS
2.9%
top 13.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 4
Latest updateMay 24

Description

A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Paged Results' control is combined with the 'ASQ' control. A malicious user in a samba AD could use this flaw to cause denial of service. This issue affects all samba versions before 4.10.15, before 4.11.8 and before 4.12.2.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.6 | Impact: 3.6

Affected Packages5 packages

NVDsamba/samba4.10.04.10.15+2
Debiansamba/samba< 2:4.12.3+dfsg-2+3
Ubuntusamba/samba< 2:4.3.11+dfsg-0ubuntu0.16.04.26+2
CVEListV5red_hat/sambaAll versions before 4.10.15, All versions before 4.11.8, All versions before 4.12.2+2
NVDopensuse/leap15.2

Also affects: Fedora 30, 31, 32

🔴Vulnerability Details

4
GHSA
GHSA-7g79-5vjp-6w3f: A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Paged Results' control is combined with the 'ASQ' control2022-05-24
CVEList
CVE-2020-10700: A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Paged Results' control is combined with the 'ASQ' control2020-05-04
OSV
CVE-2020-10700: A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Paged Results' control is combined with the 'ASQ' control2020-05-04
OSV
samba vulnerabilities2020-04-28

📋Vendor Advisories

3
Ubuntu
Samba vulnerabilities2020-04-28
Red Hat
samba: Use-after-free in Samba AD DC LDAP Server with ASQ2020-04-28
Debian
CVE-2020-10700: samba - A use-after-free flaw was found in the way samba AD DC LDAP servers, handled 'Pa...2020

💬Community

3
Bugzilla
CVE-2020-10730 samba: NULL pointer de-reference and use-after-free in Samba AD DC LDAP Server with ASQ, VLV and paged_results2020-06-22
Bugzilla
CVE-2020-10700 samba: Use-after-free in Samba AD DC LDAP Server with ASQ [fedora-all]2020-04-28
Bugzilla
CVE-2020-10700 samba: Use-after-free in Samba AD DC LDAP Server with ASQ2020-04-20
CVE-2020-10700 — Use After Free in Samba | cvebase