Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jx7v-8q27-738q

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.

A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.

EPSS

Процентиль: 59%
0.00374
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-266
CWE-269

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 5 лет назад

A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.

CVSS3: 6.1
redhat
почти 5 лет назад

A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.

CVSS3: 6.1
nvd
почти 5 лет назад

A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.

CVSS3: 6.1
msrc
почти 5 лет назад

Описание отсутствует

CVSS3: 6.1
debian
почти 5 лет назад

A flaw was found in cifs-utils in versions before 6.13. A user when mo ...

EPSS

Процентиль: 59%
0.00374
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-266
CWE-269