|
|
Subscribe / Log in / New account

samba: denial of service

Package(s):samba CVE #(s):CVE-2014-0239
Created:June 25, 2014 Updated:June 25, 2014
Description: From the CVE entry:

The internal DNS server in Samba 4.x before 4.0.18 does not check the QR field in the header section of an incoming DNS message before sending a response, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a forged response packet that triggers a communication loop, a related issue to CVE-1999-0103.

Alerts:
Gentoo 201502-15 samba 2015-02-25
openSUSE openSUSE-SU-2014:0859-1 samba 2014-07-01
Ubuntu USN-2257-1 samba 2014-06-26
Slackware SSA:2014-175-04 samba 2014-06-24

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds