Oval Definition:oval:org.opensuse.security:def:202131800
Revision Date:2022-06-30Version:1
Title:CVE-2021-31800
Description:

Multiple path traversal vulnerabilities exist in smbserver.py in Impacket through 0.9.22. An attacker that connects to a running smbserver instance can list and write to arbitrary files via ../ directory traversal. This could potentially be abused to achieve arbitrary code execution by replacing /etc/shadow or an SSH authorized key.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2021-31800
SUSE CVE-2021-31800
Platform(s):openSUSE Tumbleweed
Product(s):
Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • python36-impacket-0.9.23-1.2 is installed
  • OR python38-impacket-0.9.23-1.2 is installed
  • OR python39-impacket-0.9.23-1.2 is installed
  • BACK