Total vulnerabilities in the database
The fix in 4.6.16, 4.7.9, 4.8.4 and 4.9.7 for CVE-2018-10919 Confidential attribute disclosure vi LDAP filters was insufficient and an attacker may be able to obtain confidential BitLocker recovery keys from a Samba AD DC.
Software | From | Fixed in |
---|---|---|
samba / samba | 4.17.0 | 4.17.7 |
samba / samba | 4.0.0 | 4.16.10 |
samba / samba | 4.18.0 | 4.18.0.x |
samba / samba | 4.18.0-rc1 | 4.18.0-rc1.x |
samba / samba | 4.18.0-rc3 | 4.18.0-rc3.x |
samba / samba | 4.18.0-rc4 | 4.18.0-rc4.x |
samba / samba | 4.18.0-rc2 | 4.18.0-rc2.x |