Bug 27967

Summary: ldb security vulnerability CVE-2020-14383
Product: Mageia Reporter: Zombie Ryushu <zombie_ryushu>
Component: SecurityAssignee: Mageia Bug Squad <bugsquad>
Status: RESOLVED DUPLICATE QA Contact: Sec team <security>
Severity: normal    
Priority: Normal    
Version: Cauldron   
Target Milestone: ---   
Hardware: All   
OS: Linux   
URL: https://nvd.nist.gov/vuln/detail/CVE-2020-14383
Whiteboard:
Source RPM: ldb-2.1.4-1.mga8.src.rpm CVE: CVE-2020-14383
Status comment:

Description Zombie Ryushu 2020-12-29 07:17:40 CET
A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC server, which also serves protocols other than dnsserver, will be restarted after a short delay, but it is easy for an authenticated non administrative attacker to crash it again as soon as it returns. The Samba DNS server itself will continue to operate, but many RPC services will not.
Zombie Ryushu 2020-12-29 07:18:00 CET

CVE: (none) => CVE-2020-14383
Source RPM: ldb-2.1.4-1.mga8.src => ldb-2.1.4-1.mga8.src.rpm

Comment 1 David Walser 2020-12-29 17:04:01 CET
Already FIXED!

*** This bug has been marked as a duplicate of bug 27488 ***

Status: NEW => RESOLVED
Resolution: (none) => DUPLICATE