samba: Unprivileged user can crash winbind
Published Oct 29, 2020
5.5
MEDIUMCVSS 3.1
EPSS 0.62%
Description
A null pointer dereference flaw was found in samba's Winbind service in versions before 4.11.15, before 4.12.9 and before 4.13.1. A local user could use this flaw to crash the winbind service causing denial of service.
Affected products
- Vendor n/a Product Samba Defaultn/a
- Version All samba versions before 4.11.15, before 4.12.9 and before 4.13.1StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Samba | n/a |
|
Configuration 1
Configuration 3
- 32
- 33
Configuration 4
- 9.0
No data.
Red Hat Enterprise Linux 7
samba-0:4.10.16-9.el7_9
Fixed · RHSA-2020:5439
Red Hat Enterprise Linux 8
openchange-0:2.3-27.el8
Fixed · RHSA-2021:1647
Red Hat Enterprise Linux 8
openchange-0:2.3-27.el8
Fixed · RHSA-2021:1647
Red Hat Enterprise Linux 8
samba-0:4.13.3-3.el8
Fixed · RHSA-2021:1647
Red Hat Enterprise Linux 8
samba-0:4.13.3-3.el8
Fixed · RHSA-2021:1647
Red Hat Gluster Storage 3.5 for RHEL 7
samba-0:4.11.6-112.el7rhgs
Fixed · RHSA-2021:3723
Red Hat Gluster Storage 3.5 for RHEL 8
samba-0:4.13.7-101.el8rhgs
Fixed · RHBA-2021:1503
Red Hat Enterprise Linux 6
samba
Out of support scope
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | samba-0:4.10.16-9.el7_9 | Fixed | RHSA-2020:5439 |
| Red Hat Enterprise Linux 8 | openchange-0:2.3-27.el8 | Fixed | RHSA-2021:1647 |
| Red Hat Enterprise Linux 8 | openchange-0:2.3-27.el8 | Fixed | RHSA-2021:1647 |
| Red Hat Enterprise Linux 8 | samba-0:4.13.3-3.el8 | Fixed | RHSA-2021:1647 |
| Red Hat Enterprise Linux 8 | samba-0:4.13.3-3.el8 | Fixed | RHSA-2021:1647 |
| Red Hat Gluster Storage 3.5 for RHEL 7 | samba-0:4.11.6-112.el7rhgs | Fixed | RHSA-2021:3723 |
| Red Hat Gluster Storage 3.5 for RHEL 8 | samba-0:4.13.7-101.el8rhgs | Fixed | RHBA-2021:1503 |
| Red Hat Enterprise Linux 6 | samba | Out of support scope | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
1 other source (Red Hat) ▾
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
No CVSS v3.0 score for this CVE.
AV:L/AC:L/Au:N/C:N/I:N/A:P
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
NoTechnical Impact
PartialDecision
n/aAssessed Apr 22, 2024 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
- EPSS v4
Percentile over time
- EPSS v1
- EPSS v5
- EPSS v2
- EPSS v3
- EPSS v4
Table of values (13 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 0.62% (0.00621) | 47.83th | v5 (v2026.06.15) |
| Jun 15, 2026 | 0.62% (0.00618) | 44.71th | v5 (v2026.06.15) |
| Mar 17, 2025 | 0.23% (0.00233) | 44.12th | v4 (v2025.03.14) |
| Dec 12, 2024 | 0.06% (0.00059) | 27.10th | v3 (v2023.03.01) |
| Jun 4, 2024 | 0.06% (0.00059) | 24.99th | v3 (v2023.03.01) |
| Mar 7, 2023 | 0.06% (0.00059) | 22.97th | v3 (v2023.03.01) |
| Mar 6, 2023 | 1.28% (0.01282) | 68.34th | v2 (v2022.01.01) |
| Apr 1, 2022 | 1.28% (0.01282) | 65.91th | v2 (v2022.01.01) |
| Feb 4, 2022 | 4.80% (0.04804) | 74.65th | v2 (v2022.01.01) |
| Feb 3, 2022 | 5.90% (0.05903) | 81.25th | v1 |
| Jan 6, 2022 | 5.90% (0.05903) | 81.06th | v1 |
| Jan 5, 2022 | 1.38% (0.01379) | 71.84th | v5 (v2026.06.15) |
| Apr 14, 2021 | 1.38% (0.01379) | 0.00th | v1 |
References (13)
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00008.html vendor-advisoryThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00012.html vendor-advisoryThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2020-14323 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1891685 Issue TrackingThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/11/msg00041.html mailing-listMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2024/04/msg00015.html mailing-list
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/JE2M4FE3N3EDXVG4UKSVFPL7SQUGFFDP/ vendor-advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/W6HM73N4NEGFW5GIJJGGP6ZZBS6GTXPB/ vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2020-14323
- https://security.gentoo.org/glsa/202012-24 vendor-advisoryThird Party Advisory
- https://security.netapp.com/advisory/ntap-20201103-0001/ Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2020-14323
- https://www.samba.org/samba/security/CVE-2020-14323.html Vendor Advisory
Change history (0)
No recorded changes yet.