vulnerability

Ubuntu: (Multiple Advisories) (CVE-2021-3671): Samba vulnerabilities

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:P)
Published
Oct 12, 2021
Added
Nov 12, 2021
Modified
Aug 18, 2025

Description

A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.

Solutions

ubuntu-pro-upgrade-heimdal-clientsubuntu-pro-upgrade-heimdal-clients-xubuntu-pro-upgrade-heimdal-kcmubuntu-pro-upgrade-heimdal-kdcubuntu-pro-upgrade-heimdal-serversubuntu-pro-upgrade-heimdal-servers-xubuntu-pro-upgrade-libgssapi3-heimdalubuntu-pro-upgrade-libkdc2-heimdalubuntu-pro-upgrade-libkrb5-26-heimdalubuntu-pro-upgrade-samba

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.