CVE-2018-16851

high
Published — · Modified —
CVSS v3
CVSS v2
VIR risk
8.0

Description

Samba from version 4.0.0 and before versions 4.7.12, 4.8.7, 4.9.3 is vulnerable to a denial of service. During the processing of an LDAP search before Samba's AD DC returns the LDAP entries to the client, the entries are cached in a single memory object with a maximum size of 256MB. When this size is reached, the Samba process providing the LDAP service will follow the NULL pointer, terminating the process. There is no further vulnerability associated with this issue, merely a denial of service.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2018-16851

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2018-16851.html

vendor Authored 2026-05-27

Vendor advisory: arch — https://security.archlinux.org/ASA-201811-22

OS impact

OSVersionStatusFixed in
arch archfixed4.9.3-1
suse slesaffected
debian debianbookwormfixed2:4.9.2+dfsg-2
debian debianbullseyefixed2:4.9.2+dfsg-2
debian debianforkyfixed2:4.9.2+dfsg-2
debian debiansidfixed2:4.9.2+dfsg-2
debian debiantrixiefixed2:4.9.2+dfsg-2

References

Verify integrity in audit chain (admin only). AS-IS.