Lucene search

K
cvelistMitreCVELIST:CVE-2021-45100
HistoryDec 16, 2021 - 4:37 a.m.

CVE-2021-45100

2021-12-1604:37:02
mitre
www.cve.org
7
ksmbd server
linux kernel
cleartext communication
encryption
smb protocol
windows 10

AI Score

7.4

Confidence

High

EPSS

0.002

Percentile

55.4%

The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even though encryption has been enabled. This occurs because it sets the SMB2_GLOBAL_CAP_ENCRYPTION flag when using the SMB 3.1.1 protocol, which is a violation of the SMB protocol specification. When Windows 10 detects this protocol violation, it disables encryption.

AI Score

7.4

Confidence

High

EPSS

0.002

Percentile

55.4%