CVE Vulnerabilities

CVE-2016-5405

Published: Jun 08, 2017 | Modified: Apr 20, 2025
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
2.6 LOW
AV:N/AC:H/Au:N/C:P/I:N/A:N
RedHat/V3
6.8 LOW
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:N
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 6 through 7, and Red Hat Enterprise Linux Workstation 6 through 7 allows remote attackers to obtain user passwords.

Affected Software

NameVendorStart VersionEnd Version
Enterprise_linux_desktopRedhat6.0 (including)6.0 (including)
Enterprise_linux_desktopRedhat7.0 (including)7.0 (including)
Enterprise_linux_hpc_nodeRedhat6.0 (including)6.0 (including)
Enterprise_linux_hpc_nodeRedhat7.0 (including)7.0 (including)
Enterprise_linux_serverRedhat6.0 (including)6.0 (including)
Enterprise_linux_serverRedhat7.0 (including)7.0 (including)
Enterprise_linux_workstationRedhat6.0 (including)6.0 (including)
Enterprise_linux_workstationRedhat7.0 (including)7.0 (including)
Red Hat Enterprise Linux 6RedHat389-ds-base-0:1.2.11.15-84.el6_8*
Red Hat Enterprise Linux 7RedHat389-ds-base-0:1.3.5.10-11.el7*
389-ds-baseUbuntuprecise*
389-ds-baseUbuntuyakkety*
389-ds-baseUbuntuzesty*

References