Описание
A vulnerability was found in the 389 Directory Server that allows expired passwords to access the database to cause improper authentication.
A vulnerability was found in the 389 Directory Server. This issue allows expired passwords to access the database, causing improper authentication.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Directory Server 11 | redhat-ds:11/389-ds-base | Affected | ||
Red Hat Directory Server 12 | redhat-ds:12/389-ds-base | Not affected | ||
Red Hat Enterprise Linux 6 | 389-ds-base | Out of support scope | ||
Red Hat Enterprise Linux 7 | 389-ds-base | Fixed | RHSA-2022:5239 | 28.06.2022 |
Red Hat Enterprise Linux 8 | 389-ds | Fixed | RHSA-2022:5823 | 02.08.2022 |
Red Hat Enterprise Linux 8.4 Extended Update Support | 389-ds | Fixed | RHSA-2022:5620 | 19.07.2022 |
Red Hat Enterprise Linux 9 | 389-ds-base | Fixed | RHSA-2022:8162 | 15.11.2022 |
Red Hat Enterprise Linux 9.0 Extended Update Support | 389-ds-base | Fixed | RHSA-2022:8976 | 13.12.2022 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.7 Medium
CVSS3
Связанные уязвимости
A vulnerability was found in the 389 Directory Server that allows expired passwords to access the database to cause improper authentication.
A vulnerability was found in the 389 Directory Server that allows expired passwords to access the database to cause improper authentication.
A vulnerability was found in the 389 Directory Server that allows expi ...
A vulnerability was found in the 389 Directory Server that allows expired passwords to access the database to cause improper authentication.
Уязвимость аутентификации сервера службы каталогов 389 Directory Server, связанная с неверным сроком действия сеанса, позволяющая нарушителю получить доступ к конфиденциальным данным
EPSS
5.7 Medium
CVSS3