First published: Wed Feb 17 2021(Updated: )
A flaw was found in samba. A race condition in the password lockout code may lead to the risk of brute force attacks being successful if special conditions are met.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samba Samba | >=4.1.0<4.16.8 | |
Samba Samba | >=4.17.0<4.17.4 | |
Fedoraproject Fedora | =37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-20251 is a vulnerability found in Samba that could lead to successful brute force attacks under certain conditions.
The severity of CVE-2021-20251 is medium with a CVSS score of 5.9.
Samba versions 4.1.0 to 4.16.8 and 4.17.0 to 4.17.4 are affected by CVE-2021-20251. Fedora version 37 is also affected.
Apply the latest security patches provided by the Samba project or the respective software vendor.
More information about CVE-2021-20251 can be found at the following references: [link1], [link2], [link3].