CVE-2020-14383
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC server, which also serves protocols other than dnsserver, will be restarted after a short delay, but it is easy for an authenticated non administrative attacker to crash it again as soon as it returns. The Samba DNS server itself will continue to operate, but many RPC services will not.
Se encontró un fallo en el servidor DNS de samba. Un usuario autenticado podría usar este fallo para que el servidor RPC se bloquee. Este servidor RPC, que también sirve protocolos distintos a dnsserver, será reinciado después de un breve retraso, pero es fácil para un atacante no administrativo autenticado bloquearlo nuevamente tan pronto como regrese. El servidor DNS de Samba seguirá funcionando, pero muchos servicios RPC no
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2020-06-17 CVE Reserved
- 2020-11-02 CVE Published
- 2024-04-23 EPSS Updated
- 2024-08-15 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-391: Unchecked Error Condition
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html | Mailing List |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1892636 | 2024-04-22 |
URL | Date | SRC |
---|---|---|
https://security.gentoo.org/glsa/202012-24 | 2024-04-22 | |
https://www.samba.org/samba/security/CVE-2020-14383.html | 2024-04-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | >= 4.0.0 < 4.11.15 Search vendor "Samba" for product "Samba" and version " >= 4.0.0 < 4.11.15" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | >= 4.12.0 < 4.12.9 Search vendor "Samba" for product "Samba" and version " >= 4.12.0 < 4.12.9" | - |
Affected
| ||||||
Samba Search vendor "Samba" | Samba Search vendor "Samba" for product "Samba" | >= 4.13.0 < 4.13.1 Search vendor "Samba" for product "Samba" and version " >= 4.13.0 < 4.13.1" | - |
Affected
| ||||||
Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | 8.0 Search vendor "Redhat" for product "Enterprise Linux" and version "8.0" | - |
Affected
|