Vulnerability Description
The LDAP server in the AD domain controller in Samba 4.x before 4.1.22 does not check return values to ensure successful ASN.1 memory allocation, which allows remote attackers to cause a denial of service (memory consumption and daemon crash) via crafted packets.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | >= 4.0.0, < 4.1.22 |
| Canonical | Ubuntu Linux | 12.04 |
| Debian | Debian Linux | 7.0 |
Related Weaknesses (CWE)
References
- http://lists.fedoraproject.org/pipermail/package-announce/2015-December/174076.hThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-December/174391.hThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00033.htmlMailing ListThird Party Advisory
- http://www.debian.org/security/2016/dsa-3433Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjan2016-2867209.hThird Party Advisory
- http://www.securityfocus.com/bid/79736Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1034492Third Party AdvisoryVDB Entry
- http://www.ubuntu.com/usn/USN-2855-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2855-2Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1288451Issue TrackingThird Party Advisory
- https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=530d50a1abdcdf4d1775652d4c456c
- https://git.samba.org/?p=samba.git%3Ba=commit%3Bh=9d989c9dd7a5b92d0c5d6528793547
- https://security.gentoo.org/glsa/201612-47Third Party Advisory
- https://www.samba.org/samba/security/CVE-2015-7540.htmlVendor Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-December/174076.hThird Party Advisory
FAQ
What is CVE-2015-7540?
CVE-2015-7540 is a vulnerability with a CVSS score of 7.5 (HIGH). The LDAP server in the AD domain controller in Samba 4.x before 4.1.22 does not check return values to ensure successful ASN.1 memory allocation, which allows remote attackers to cause a denial of ser...
How severe is CVE-2015-7540?
CVE-2015-7540 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-7540?
Check the references section above for vendor advisories and patch information. Affected products include: Samba Samba, Canonical Ubuntu Linux, Debian Debian Linux.