CVE-2016-5416

Severity
7.5HIGH
EPSS
0.2%
top 61.84%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 8
Latest updateMay 14

Description

389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 6 through 7, and Red Hat Enterprise Linux Workstation 6 through 7 allows remote attackers to read the default Access Control Instructions.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages4 packages

🔴Vulnerability Details

3
GHSA
GHSA-c3fg-w6h6-qgf9: 389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 62022-05-14
CVEList
CVE-2016-5416: 389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 62017-06-08
OSV
CVE-2016-5416: 389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 62017-06-08

📋Vendor Advisories

2
Red Hat
389-ds-base: ACI readable by anonymous user2016-05-25
Debian
CVE-2016-5416: 389-ds-base - 389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat En...2016

💬Community

2
Bugzilla
CVE-2016-5416 389-ds-base: ACI readable by anonymous user [fedora-all]2016-07-29
Bugzilla
CVE-2016-5416 389-ds-base: ACI readable by anonymous user2016-06-23