Logo
vulnerabilityCVE-2021-20208
Name
CVE-2021-20208
Source
NVD ( link)Debian ( link)
Description
A flaw was found in cifs-utils in versions before 6.13. A user when mounting a krb5 CIFS file system from within a container can use Kerberos credentials of the host. The highest threat from this vulnerability is to data confidentiality and integrity.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
cifs-utils
Exploitable

Vulnerability Ratings#


6.1
CVSSv31
4.9
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
7.4
Not Affected
buildroot
master
7.4
Not Affected
openwrt
master
7.5-r2
Not Affected
yocto
kirkstone
6.15
Not Affected
yocto
master
7.4
Not Affected
yocto
scarthgap
7.0
Not Affected