Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2023-0225
HistoryApr 03, 2023 - 11:15 p.m.

CVE-2023-0225

2023-04-0323:15:06
Alpine Linux Development Team
security.alpinelinux.org
12
security
vulnerability
cve-2023-0225
unix
system

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

AI Score

5.5

Confidence

High

EPSS

0.003

Percentile

67.8%

A flaw was found in Samba. An incomplete access check on dnsHostName allows authenticated but otherwise unprivileged users to delete this attribute from any object in the directory.

OSVersionArchitecturePackageVersionFilename
Alpineedge-mainnoarchsamba< 4.18.1-r0UNKNOWN
Alpine3.18-mainnoarchsamba< 4.18.1-r0UNKNOWN
Alpine3.19-mainnoarchsamba< 4.18.1-r0UNKNOWN
Alpine3.20-mainnoarchsamba< 4.18.1-r0UNKNOWN

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

AI Score

5.5

Confidence

High

EPSS

0.003

Percentile

67.8%