← back
CVE-2021-3671

CVE-2021-3671

EPSS 2.0%CWE-476
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 2.0%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
12 Oct 2021Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.
Affected products
n/a · Samba

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →