vulnerability

SUSE: CVE-2021-3671: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:P)
Published
Oct 12, 2021
Added
Jan 17, 2023
Modified
Jan 17, 2023

Description

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

Solutions

suse-upgrade-libasn1-8suse-upgrade-libgssapi3suse-upgrade-libhcrypto4suse-upgrade-libhdb9suse-upgrade-libheimbase1suse-upgrade-libheimdal-develsuse-upgrade-libheimedit0suse-upgrade-libheimntlm0suse-upgrade-libhx509-5suse-upgrade-libkadm5clnt7suse-upgrade-libkadm5srv8suse-upgrade-libkafs0suse-upgrade-libkdc2suse-upgrade-libkrb5-26suse-upgrade-libotp0suse-upgrade-libroken18suse-upgrade-libsl0suse-upgrade-libwind0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.