AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-16853

HIGH · CVSS 7.5 EPSS 3.08%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-11-28 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. See the original NVD description below for full technical details.

CVE
CVE-2018-16853
Severity
HIGH
CVSS
7.5
EPSS
3.08%

Original NVD Description

Samba from version 4.7.0 has a vulnerability that allows a user in a Samba AD domain to crash the KDC when Samba is built in the non-default MIT Kerberos configuration. With this advisory the Samba Team clarify that the MIT Kerberos build of the Samba AD DC is considered experimental. Therefore the Samba Team will not issue security patches for this configuration. Additionally, Samba 4.7.12, 4.8.7 and 4.9.3 have been issued as security releases to prevent building of the AD DC with MIT Kerberos unless --with-experimental-mit-ad-dc is specified to the configure command.

Related CVEs

Other vulnerabilities affecting the same vendor(s)