samba: Crash after failed character conversion at log level 3 or above
Published Jan 21, 2020
6.5
MEDIUMCVSS 3.1
EPSS 3.15%
Description
All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue where if it is set with "log level = 3" (or above) then the string obtained from the client, after a failed character conversion, is printed. Such strings can be provided during the NTLMSSP authentication exchange. In the Samba AD DC in particular, this may cause a long-lived process(such as the RPC server) to terminate. (In the file server case, the most likely target, smbd, operates as process-per-client and so a crash there is harmless).
Affected products
-
- Version All versions 4.10.x before 4.10.12StatusaffectedConstraints-
- Version All versions 4.11.x before 4.11.5StatusaffectedConstraints-
- Version All versions 4.9.x before 4.9.18StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
Configuration 1
- ≥ 4.9.0 · < 4.9.18
- ≥ 4.10.0 · < 4.10.12
- ≥ 4.11.0 · < 4.11.5
- 30
- 31
Configuration 2
- 3.0
- 7.0
- 8.0
Configuration 3
- 16.04
- 18.04
- 19.04
- 19.10
Configuration 4
- n/a
- 1.2
- n/a
- 6.2
Configuration 5
- 9.0
No data.
Red Hat Enterprise Linux 7
samba-0:4.10.16-5.el7
Fixed · RHSA-2020:3981
Red Hat Enterprise Linux 8
openchange-0:2.3-24.el8
Fixed · RHSA-2020:1878
Red Hat Enterprise Linux 8
openchange-0:2.3-24.el8
Fixed · RHSA-2020:1878
Red Hat Enterprise Linux 8
samba-0:4.11.2-13.el8
Fixed · RHSA-2020:1878
Red Hat Enterprise Linux 8
samba-0:4.11.2-13.el8
Fixed · RHSA-2020:1878
Red Hat Gluster Storage 3.5 for RHEL 7
libtalloc-0:2.2.0-9.el7rhgs
Fixed · RHSA-2020:0943
Red Hat Gluster Storage 3.5 for RHEL 7
libtdb-0:1.4.2-4.el7rhgs
Fixed · RHSA-2020:0943
Red Hat Gluster Storage 3.5 for RHEL 7
libtevent-0:0.10.0-4.el7rhgs
Fixed · RHSA-2020:0943
Red Hat Gluster Storage 3.5 for RHEL 7
samba-0:4.11.6-104.el7rhgs
Fixed · RHSA-2020:0943
Red Hat Enterprise Linux 5
samba
Not affected
Red Hat Enterprise Linux 6
samba
Not affected
Red Hat Enterprise Linux 6
samba4
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | samba-0:4.10.16-5.el7 | Fixed | RHSA-2020:3981 |
| Red Hat Enterprise Linux 8 | openchange-0:2.3-24.el8 | Fixed | RHSA-2020:1878 |
| Red Hat Enterprise Linux 8 | openchange-0:2.3-24.el8 | Fixed | RHSA-2020:1878 |
| Red Hat Enterprise Linux 8 | samba-0:4.11.2-13.el8 | Fixed | RHSA-2020:1878 |
| Red Hat Enterprise Linux 8 | samba-0:4.11.2-13.el8 | Fixed | RHSA-2020:1878 |
| Red Hat Gluster Storage 3.5 for RHEL 7 | libtalloc-0:2.2.0-9.el7rhgs | Fixed | RHSA-2020:0943 |
| Red Hat Gluster Storage 3.5 for RHEL 7 | libtdb-0:1.4.2-4.el7rhgs | Fixed | RHSA-2020:0943 |
| Red Hat Gluster Storage 3.5 for RHEL 7 | libtevent-0:0.10.0-4.el7rhgs | Fixed | RHSA-2020:0943 |
| Red Hat Gluster Storage 3.5 for RHEL 7 | samba-0:4.11.6-104.el7rhgs | Fixed | RHSA-2020:0943 |
| Red Hat Enterprise Linux 5 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 6 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 6 | samba4 | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Do not set a log level of 3 or above in production.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
No CVSS v3.0 score for this CVE.
AV:N/AC:H/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
No CISA SSVC assessment for this CVE yet.
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
- EPSS v4
Percentile over time
- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
- EPSS v4
Table of values (32 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 3.15% (0.03151) | 87.50th | v5 (v2026.06.15) |
| Jun 15, 2026 | 3.15% (0.03151) | 86.23th | v5 (v2026.06.15) |
| Dec 28, 2025 | 10.24% (0.10242) | 92.90th | v4 (v2025.03.14) |
| Dec 27, 2025 | 5.81% (0.05807) | 90.26th | v4 (v2025.03.14) |
| Nov 30, 2025 | 10.24% (0.10242) | 92.86th | v4 (v2025.03.14) |
| Nov 21, 2025 | 14.77% (0.14775) | 94.23th | v4 (v2025.03.14) |
| Nov 18, 2025 | 9.78% (0.09778) | 92.15th | v4 (v2025.03.14) |
| Nov 9, 2025 | 14.77% (0.14775) | 94.21th | v4 (v2025.03.14) |
| Oct 28, 2025 | 8.97% (0.08969) | 92.23th | v4 (v2025.03.14) |
| Oct 27, 2025 | 5.04% (0.05045) | 89.29th | v4 (v2025.03.14) |
| Oct 1, 2025 | 8.97% (0.08969) | 92.32th | v4 (v2025.03.14) |
| Mar 30, 2025 | 5.93% (0.05927) | 89.68th | v4 (v2025.03.14) |
| Mar 29, 2025 | 9.82% (0.09819) | 88.20th | v4 (v2025.03.14) |
| Mar 17, 2025 | 6.40% (0.06396) | 90.33th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.60% (0.00598) | 79.14th | v3 (v2023.03.01) |
| Mar 28, 2024 | 0.60% (0.00602) | 78.05th | v3 (v2023.03.01) |
| Dec 12, 2023 | 0.60% (0.00602) | 76.05th | v3 (v2023.03.01) |
| Nov 25, 2023 | 0.63% (0.00627) | 76.62th | v3 (v2023.03.01) |
| Nov 8, 2023 | 0.65% (0.00646) | 76.92th | v3 (v2023.03.01) |
| Sep 3, 2023 | 0.58% (0.00584) | 75.39th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.57% (0.00573) | 74.57th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.54% (0.01537) | 74.52th | v2 (v2022.01.01) |
| Apr 1, 2022 | 1.54% (0.01537) | 72.41th | v2 (v2022.01.01) |
| Feb 4, 2022 | 11.61% (0.11613) | 88.84th | v2 (v2022.01.01) |
| Feb 3, 2022 | 9.45% (0.09448) | 86.95th | v1 |
| Jan 6, 2022 | 9.45% (0.09448) | 86.79th | v1 |
| Jan 5, 2022 | 2.27% (0.02273) | 78.61th | v1 |
| Jun 8, 2021 | 2.27% (0.02273) | 0.00th | v1 |
| Jun 2, 2021 | 9.45% (0.09448) | 0.00th | v1 |
| Jun 1, 2021 | 2.27% (0.02273) | 0.00th | v5 (v2026.06.15) |
| May 30, 2021 | 2.27% (0.02273) | 0.00th | v1 |
| Apr 14, 2021 | 2.07% (0.02069) | 0.00th | v1 |
References (15)
- http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00055.html vendor-advisoryThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2019-14907 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1791207 Issue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14907 Issue TrackingThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2021/05/msg00023.html mailing-listMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2023/09/msg00013.html mailing-list
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4ACZVNMIFQGGXNJPMHAVBN3H2U65FXQY/ vendor-advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GQ6U65I2K23YJC4FESW477WL55TU3PPT/ vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2019-14907
- https://security.gentoo.org/glsa/202003-52 vendor-advisoryThird Party Advisory
- https://security.netapp.com/advisory/ntap-20200122-0001/ Third Party Advisory
- https://usn.ubuntu.com/4244-1/ vendor-advisoryThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2019-14907
- https://www.samba.org/samba/security/CVE-2019-14907.html Vendor Advisory
- https://www.synology.com/security/advisory/Synology_SA_20_01 Third Party Advisory
Change history (0)
No recorded changes yet.