Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-43566

Опубликовано: 11 янв. 2022
Источник: ubuntu
Приоритет: low
CVSS2: 1.2
CVSS3: 2.5

Описание

All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

released

4.13.17~dfsg-0ubuntu1
esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

needed

esm-infra/focal

released

2:4.13.17~dfsg-0ubuntu0.21.04.1
esm-infra/xenial

needs-triage

focal

released

2:4.13.17~dfsg-0ubuntu0.21.04.1
hirsute

ignored

end of life
impish

released

2:4.13.17~dfsg-0ubuntu0.21.10.1
jammy

released

4.13.17~dfsg-0ubuntu1

Показывать по

1.2 Low

CVSS2

2.5 Low

CVSS3

Связанные уязвимости

CVSS3: 2.6
redhat
около 4 лет назад

All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed.

CVSS3: 2.5
nvd
около 4 лет назад

All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed.

CVSS3: 2.5
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 2.5
debian
около 4 лет назад

All versions of Samba prior to 4.13.16 are vulnerable to a malicious c ...

CVSS3: 2.5
github
около 4 лет назад

All versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed.

1.2 Low

CVSS2

2.5 Low

CVSS3