Wind River Support Network

HomeDefectsLIN1021-268
Fixed

LIN1021-268 : Security Advisory - samba - CVE-2020-27840

Created: May 24, 2021    Updated: Mar 7, 2022
Resolved Date: Jul 20, 2021
Found In Version: 10.21.20.1
Fix Version: 10.21.20.3
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

An anonymous attacker can crash the Samba AD DC LDAP server by sending easily crafted DNs as part of a bind request. More serious heap corruption is likely also possible.

CREATE(Triage):(User=admin) CVE-2020-27840 (https://nvd.nist.gov/vuln/detail/CVE-2020-27840)

CVEs


Live chat
Online