Описание
cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) characters but is not a valid credentials file.
Ссылки
- PatchThird Party Advisory
- PatchThird Party Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 6.15 (исключая)
cpe:2.3:a:samba:cifs-utils:*:*:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
Конфигурация 3
Одно из
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
EPSS
Процентиль: 76%
0.00927
Низкий
5.3 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-532
Связанные уязвимости
CVSS3: 5.3
ubuntu
почти 4 года назад
cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) characters but is not a valid credentials file.
CVSS3: 4.3
redhat
почти 4 года назад
cifs-utils through 6.14, with verbose logging, can cause an information leak when a file contains = (equal sign) characters but is not a valid credentials file.
CVSS3: 5.3
debian
почти 4 года назад
cifs-utils through 6.14, with verbose logging, can cause an informatio ...
EPSS
Процентиль: 76%
0.00927
Низкий
5.3 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
CWE-532