Lucene search

K
cveRedhatCVE-2021-3670
HistoryAug 23, 2022 - 4:15 p.m.

CVE-2021-3670

2022-08-2316:15:09
CWE-400
redhat
web.nvd.nist.gov
236
4
cve-2021-3670
samba
ad
dc
ldap
nvd

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

6.4

Confidence

High

EPSS

0.003

Percentile

68.1%

MaxQueryDuration not honoured in Samba AD DC LDAP

Affected configurations

Nvd
Vulners
Node
sambasambaRange4.1.0
Node
redhatstorageMatch3.0
OR
fedoraprojectfedoraMatch35
VendorProductVersionCPE
sambasamba*cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*
redhatstorage3.0cpe:2.3:a:redhat:storage:3.0:*:*:*:*:*:*:*
fedoraprojectfedora35cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "samba",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Affects Samba 4.1 and newer."
      }
    ]
  }
]

Social References

More

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

6.4

Confidence

High

EPSS

0.003

Percentile

68.1%