Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-4496

Опубликовано: 14 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

РелизСтатусПримечание
devel

released

2:4.1.3+dfsg-2ubuntu4
esm-infra-legacy/trusty

not-affected

2:4.1.3+dfsg-2ubuntu4
esm-infra/xenial

not-affected

2:4.1.3+dfsg-2ubuntu4
lucid

released

2:3.4.7~dfsg-1ubuntu3.14
precise

released

2:3.6.3-2ubuntu2.10
precise/esm

not-affected

2:3.6.3-2ubuntu2.10
quantal

released

2:3.6.6-3ubuntu5.4
saucy

released

2:3.6.18-1ubuntu3.2
trusty

released

2:4.1.3+dfsg-2ubuntu4
trusty/esm

not-affected

2:4.1.3+dfsg-2ubuntu4

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

ignored

end of life
saucy

ignored

end of life
trusty

DNE

trusty/esm

DNE

upstream

released

4.0.16, 4.1.6

Показывать по

EPSS

Процентиль: 89%
0.04521
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

nvd
больше 11 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

debian
больше 11 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 d ...

github
около 3 лет назад

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

fstec
больше 10 лет назад

Уязвимость операционной системы SUSE Linux Enterprise, позволяющая злоумышленнику нарушить конфиденциальность защищаемой информации

EPSS

Процентиль: 89%
0.04521
Низкий

5 Medium

CVSS2