Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c3c3-3xh6-r623

Опубликовано: 25 мар. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache.

A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache.

EPSS

Процентиль: 2%
0.00015
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-488

Связанные уязвимости

CVSS3: 5.9
ubuntu
5 месяцев назад

A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache.

CVSS3: 5.9
redhat
10 месяцев назад

A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache.

CVSS3: 5.9
nvd
5 месяцев назад

A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache.

CVSS3: 5.9
msrc
5 месяцев назад

Описание отсутствует

CVSS3: 5.9
debian
5 месяцев назад

A flaw was found in cifs-utils. When trying to obtain Kerberos credent ...

EPSS

Процентиль: 2%
0.00015
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-488