DEBIAN-CVE-2018-16841

    Dashboard / Vulnerabilities / DEBIAN-CVE-2018-16841

    DEBIAN-CVE-2018-16841

    Published: 28 Nov 2018Last Modified: 1 Sept 2026
    Upstream:

    Summary:

    Details: Samba from version 4.3.0 and before versions 4.7.12, 4.8.7 and 4.9.3 are vulnerable to a denial of service. When configured to accept smart-card authentication, Samba's KDC will call talloc_free() twice on the same memory if the principal in a validly signed certificate does not match the principal in the AS-REQ. This is only possible after authentication with a trusted certificate. talloc is robust against further corruption from a double-free with talloc_free() and directly calls abort(), terminating the KDC process.

    Affected packages

    Package

    Name: samba

    Purl: pkg:deb/debian/samba?arch=source&distro=bookworm

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -2:4.9.2+dfsg-2

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    DEBIAN-CVE-2018-16841 | CVE-DB