VDB
DEBIAN-CVE-2021-3671
DEBIAN-CVE-2021-3671
PUBLISHED
CVSS 6.5 MEDIUM
A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting Server - Request). An authenticated user could use this flaw to crash the samba server.
Risk Scores
CVSS 3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:11 | heimdal | 0, 7.7.0+dfsg, 7.7.0+dfsg |
| Debian:13 | samba | 0, 0, 0 |
| Debian:14 | samba | 0, 0, 0 |
| Debian:14 | heimdal | 0, 0, 0 |
| Debian:12 | samba | 0, 0, 0 |
| Debian:12 | heimdal | 0, 0, 0 |
| Debian:11 | samba | 0, 4.13.5+dfsg, 0 |
| Debian:13 | heimdal | 0, 0, 0 |
Timeline
- Oct 12, 2021 CVE Published
- Apr 28, 2026 CVE Updated