Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-7030

Опубликовано: 28 авг. 2017
Источник: debian
EPSS Низкий

Описание

FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
freeipafixed4.4.4-1package

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1370493

  • https://fedorahosted.org/freeipa/ticket/6561

  • Upstream patch: https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=6f1d92746

  • Additional dependency: https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=73f33569c

EPSS

Процентиль: 81%
0.0153
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 8 лет назад

FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

CVSS3: 7.5
redhat
почти 9 лет назад

FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

CVSS3: 7.5
nvd
около 8 лет назад

FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

CVSS3: 7.5
github
больше 3 лет назад

FreeIPA uses a default password policy that locks an account after 5 unsuccessful authentication attempts, which allows remote attackers to cause a denial of service by locking out the account in which system services run on.

oracle-oval
почти 9 лет назад

ELSA-2017-0001: ipa security update (MODERATE)

EPSS

Процентиль: 81%
0.0153
Низкий