ZeroHour

CVE-2021-3671

CVSS 3.1
6.5 medium
EPSS
2%p81
Published
()
Modified
Description

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

Vendors
sambadebiannetapp
Products
samba, debian linux, management services for element software, management services for netapp hci, ontap select deploy administration utility
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.