Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3671

Опубликовано: 12 окт. 2021
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4
CVSS3: 6.5

Описание

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

РелизСтатусПримечание
bionic

released

7.5.0+dfsg-1ubuntu0.1
devel

not-affected

7.7.0+dfsg-3ubuntu1
esm-apps/jammy

not-affected

7.7.0+dfsg-3ubuntu1
esm-apps/noble

not-affected

7.7.0+dfsg-3ubuntu1
esm-infra-legacy/trusty

released

1.6~git20131207+dfsg-1ubuntu1.2+esm1
esm-infra/bionic

released

7.5.0+dfsg-1ubuntu0.1
esm-infra/focal

released

7.7.0+dfsg-1ubuntu1.1
esm-infra/xenial

released

1.7~git20150920+dfsg-4ubuntu1.16.04.1+esm1
focal

released

7.7.0+dfsg-1ubuntu1.1
hirsute

ignored

end of life

Показывать по

РелизСтатусПримечание
bionic

released

2:4.7.6+dfsg~ubuntu-0ubuntu2.26
devel

released

2:4.13.14+dfsg-0ubuntu1
esm-infra-legacy/trusty

needed

esm-infra/bionic

released

2:4.7.6+dfsg~ubuntu-0ubuntu2.26
esm-infra/focal

released

2:4.13.14+dfsg-0ubuntu0.20.04.1
esm-infra/xenial

needed

focal

released

2:4.13.14+dfsg-0ubuntu0.20.04.1
hirsute

released

2:4.13.14+dfsg-0ubuntu0.21.04.1
impish

released

2:4.13.14+dfsg-0ubuntu0.21.10.1
jammy

released

2:4.13.14+dfsg-0ubuntu1

Показывать по

EPSS

Процентиль: 81%
0.01476
Низкий

4 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
больше 4 лет назад

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

CVSS3: 6.5
nvd
больше 4 лет назад

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

CVSS3: 6.5
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 6.5
debian
больше 4 лет назад

A null pointer de-reference was found in the way samba kerberos server ...

CVSS3: 6.5
github
больше 3 лет назад

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

EPSS

Процентиль: 81%
0.01476
Низкий

4 Medium

CVSS2

6.5 Medium

CVSS3