PT-2023-10677 · Samba+4 · Samba+4

Published

2018-08-31

·

Updated

2026-01-29

·

CVE-2018-14628

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Samba (affected versions not specified)
Description An information leak issue was discovered in Samba's LDAP server. Due to missing access control checks, an authenticated but unprivileged attacker could discover the names and preserved attributes of deleted objects in the LDAP store.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Missing Authorization

Weakness Enumeration

Related Identifiers

ALT-PU-2023-7788
ALT-PU-2023-7794
ALT-PU-2024-12484
ALT-PU-2024-1311
AZL-13064
AZL-36987
BDU:2025-03903
CVE-2018-14628
ECHO-B63D-A3C9-BA66
OPENSUSE-SU-2024:13579-1

Affected Products

Alt Linux
Astra Linux
Debian
Red Os
Samba