CVE-2020-14383 - CVE House
Back to Database
Status published Medium CVE-2020-14383

A flaw was found in samba's DNS server. An authenticated...

Vulnerability Description

A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server to crash. This RPC server, which also serves protocols other than dnsserver, will be restarted after a short delay, but it is easy for an authenticated non administrative attacker to crash it again as soon as it returns. The Samba DNS server itself will continue to operate, but many RPC services will not.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-14383

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

samba
Vulnerable Versions:
samba 4.11.15, samba 4.12.9, samba 4.13.1

Timeline

Official Publish: December 2nd, 2020
Last Modified: August 15th, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Weaknesses (CWE)

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.