CVE-2016-5416

389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 6 through 7, and Red Hat Enterprise Linux Workstation 6 through 7 allows remote attackers to read the default Access Control Instructions.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_hpc_node:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_hpc_node:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

History

12 Feb 2023, 23:24

Type Values Removed Values Added
References
  • {'url': 'https://access.redhat.com/errata/RHSA-2016:2765', 'name': 'https://access.redhat.com/errata/RHSA-2016:2765', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2016:2594', 'name': 'https://access.redhat.com/errata/RHSA-2016:2594', 'tags': [], 'refsource': 'MISC'}
  • {'url': 'https://access.redhat.com/security/cve/CVE-2016-5416', 'name': 'https://access.redhat.com/security/cve/CVE-2016-5416', 'tags': [], 'refsource': 'MISC'}
Summary It was found that 389 Directory Server was vulnerable to a flaw in which the default ACI (Access Control Instructions) could be read by an anonymous user. This could lead to leakage of sensitive information. 389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 6 through 7, and Red Hat Enterprise Linux Workstation 6 through 7 allows remote attackers to read the default Access Control Instructions.

02 Feb 2023, 21:17

Type Values Removed Values Added
Summary 389 Directory Server in Red Hat Enterprise Linux Desktop 6 through 7, Red Hat Enterprise Linux HPC Node 6 through 7, Red Hat Enterprise Linux Server 6 through 7, and Red Hat Enterprise Linux Workstation 6 through 7 allows remote attackers to read the default Access Control Instructions. It was found that 389 Directory Server was vulnerable to a flaw in which the default ACI (Access Control Instructions) could be read by an anonymous user. This could lead to leakage of sensitive information.
References
  • (MISC) https://access.redhat.com/errata/RHSA-2016:2765 -
  • (MISC) https://access.redhat.com/errata/RHSA-2016:2594 -
  • (MISC) https://access.redhat.com/security/cve/CVE-2016-5416 -

Information

Published : 2017-06-08 19:29

Updated : 2023-12-10 12:15


NVD link : CVE-2016-5416

Mitre link : CVE-2016-5416

CVE.ORG link : CVE-2016-5416


JSON object : View

Products Affected

redhat

  • enterprise_linux_hpc_node
  • enterprise_linux_server
  • enterprise_linux_desktop
  • enterprise_linux_workstation
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor