CVE-2015-3223
libldb: Remote DoS in Samba (AD) LDAP server
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The ldb_wildcard_compare function in ldb_match.c in ldb before 1.1.24, as used in the AD LDAP server in Samba 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, mishandles certain zero values, which allows remote attackers to cause a denial of service (infinite loop) via crafted packets.
La función ldb_wildcard_compare en ldb_match.c en ldb en versiones anteriores a 1.1.24, como se utiliza en el servidor AD LDAP en Samba 4.x en versiones anteriores a 4.1.22, 4.2.x en versiones anteriores a 4.2.7 y 4.3.x en versiones anteriores a 4.3.3, no maneja correctamente valores cero, lo que permite a atacantes remotos provocar una denegación de servicio (bucle infinito) a través de paquetes manipulados.
A denial of service flaw was found in the ldb_wildcard_compare() function of libldb. A remote attacker could send a specially crafted packet that, when processed by an application using libldb (for example the AD LDAP server in Samba), would cause that application to consume an excessive amount of memory and crash.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-04-10 CVE Reserved
- 2015-12-29 CVE Published
- 2024-08-06 CVE Updated
- 2024-10-18 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-189: Numeric Errors
- CWE-399: Resource Management Errors
- CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop')
CAPEC
References (20)
URL | Tag | Source |
---|---|---|
http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.html | X_refsource_confirm | |
http://www.securityfocus.com/bid/79731 | Vdb Entry | |
http://www.securitytracker.com/id/1034493 | Vdb Entry | |
https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=aa6c27148b9d3f8c1e4fdd5dd46bfecbbd0ca465 | X_refsource_confirm | |
https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=ec504dbf69636a554add1f3d5703dd6c3ad450b8 | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.0 Search vendor "Samba" for product "Samba" and version "4.0.0" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.1 Search vendor "Samba" for product "Samba" and version "4.0.1" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.2 Search vendor "Samba" for product "Samba" and version "4.0.2" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.3 Search vendor "Samba" for product "Samba" and version "4.0.3" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.4 Search vendor "Samba" for product "Samba" and version "4.0.4" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.5 Search vendor "Samba" for product "Samba" and version "4.0.5" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.6 Search vendor "Samba" for product "Samba" and version "4.0.6" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.7 Search vendor "Samba" for product "Samba" and version "4.0.7" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.8 Search vendor "Samba" for product "Samba" and version "4.0.8" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.9 Search vendor "Samba" for product "Samba" and version "4.0.9" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.10 Search vendor "Samba" for product "Samba" and version "4.0.10" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.11 Search vendor "Samba" for product "Samba" and version "4.0.11" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.12 Search vendor "Samba" for product "Samba" and version "4.0.12" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.13 Search vendor "Samba" for product "Samba" and version "4.0.13" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.14 Search vendor "Samba" for product "Samba" and version "4.0.14" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.15 Search vendor "Samba" for product "Samba" and version "4.0.15" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.16 Search vendor "Samba" for product "Samba" and version "4.0.16" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.17 Search vendor "Samba" for product "Samba" and version "4.0.17" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.18 Search vendor "Samba" for product "Samba" and version "4.0.18" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.19 Search vendor "Samba" for product "Samba" and version "4.0.19" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.20 Search vendor "Samba" for product "Samba" and version "4.0.20" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.21 Search vendor "Samba" for product "Samba" and version "4.0.21" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.22 Search vendor "Samba" for product "Samba" and version "4.0.22" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.23 Search vendor "Samba" for product "Samba" and version "4.0.23" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.0.24 Search vendor "Samba" for product "Samba" and version "4.0.24" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.0 Search vendor "Samba" for product "Samba" and version "4.1.0" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.1 Search vendor "Samba" for product "Samba" and version "4.1.1" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.2 Search vendor "Samba" for product "Samba" and version "4.1.2" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.3 Search vendor "Samba" for product "Samba" and version "4.1.3" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.4 Search vendor "Samba" for product "Samba" and version "4.1.4" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.5 Search vendor "Samba" for product "Samba" and version "4.1.5" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.6 Search vendor "Samba" for product "Samba" and version "4.1.6" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.7 Search vendor "Samba" for product "Samba" and version "4.1.7" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.8 Search vendor "Samba" for product "Samba" and version "4.1.8" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.9 Search vendor "Samba" for product "Samba" and version "4.1.9" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.10 Search vendor "Samba" for product "Samba" and version "4.1.10" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.11 Search vendor "Samba" for product "Samba" and version "4.1.11" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.12 Search vendor "Samba" for product "Samba" and version "4.1.12" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.13 Search vendor "Samba" for product "Samba" and version "4.1.13" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.14 Search vendor "Samba" for product "Samba" and version "4.1.14" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.15 Search vendor "Samba" for product "Samba" and version "4.1.15" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.16 Search vendor "Samba" for product "Samba" and version "4.1.16" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.17 Search vendor "Samba" for product "Samba" and version "4.1.17" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.18 Search vendor "Samba" for product "Samba" and version "4.1.18" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.19 Search vendor "Samba" for product "Samba" and version "4.1.19" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.20 Search vendor "Samba" for product "Samba" and version "4.1.20" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.1.21 Search vendor "Samba" for product "Samba" and version "4.1.21" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.0 Search vendor "Samba" for product "Samba" and version "4.2.0" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.1 Search vendor "Samba" for product "Samba" and version "4.2.1" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.2 Search vendor "Samba" for product "Samba" and version "4.2.2" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.3 Search vendor "Samba" for product "Samba" and version "4.2.3" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.4 Search vendor "Samba" for product "Samba" and version "4.2.4" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.5 Search vendor "Samba" for product "Samba" and version "4.2.5" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.2.6 Search vendor "Samba" for product "Samba" and version "4.2.6" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.3.0 Search vendor "Samba" for product "Samba" and version "4.3.0" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.3.1 Search vendor "Samba" for product "Samba" and version "4.3.1" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | 4.3.2 Search vendor "Samba" for product "Samba" and version "4.3.2" | - |
Affected
|