Vulnerability Description
The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even though encryption has been enabled. This occurs because it sets the SMB2_GLOBAL_CAP_ENCRYPTION flag when using the SMB 3.1.1 protocol, which is a violation of the SMB protocol specification. When Windows 10 detects this protocol violation, it disables encryption.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ksmbd Project | Ksmbd | <= 3.4.2 |
| Linux | Linux Kernel | <= 5.15.8 |
| Netapp | H410C Firmware | - |
| Netapp | H410C | - |
| Netapp | H300S Firmware | - |
| Netapp | H300S | - |
| Netapp | H500S Firmware | - |
| Netapp | H500S | - |
| Netapp | H700S Firmware | - |
| Netapp | H700S | - |
| Netapp | H300E Firmware | - |
| Netapp | H300E | - |
| Netapp | H500E Firmware | - |
| Netapp | H500E | - |
| Netapp | H700E Firmware | - |
| Netapp | H700E | - |
| Netapp | H410S Firmware | - |
| Netapp | H410S | - |
Related Weaknesses (CWE)
References
- https://github.com/cifsd-team/ksmbd/issues/550Third Party Advisory
- https://github.com/cifsd-team/ksmbd/pull/551PatchThird Party Advisory
- https://marc.info/?l=linux-kernel&m=163961726017023&w=2Third Party Advisory
- https://security.netapp.com/advisory/ntap-20220107-0001/Third Party Advisory
- https://github.com/cifsd-team/ksmbd/issues/550Third Party Advisory
- https://github.com/cifsd-team/ksmbd/pull/551PatchThird Party Advisory
- https://marc.info/?l=linux-kernel&m=163961726017023&w=2Third Party Advisory
- https://security.netapp.com/advisory/ntap-20220107-0001/Third Party Advisory
FAQ
What is CVE-2021-45100?
CVE-2021-45100 is a vulnerability with a CVSS score of 7.5 (HIGH). The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even though encryption has been enabled. This occurs because it sets the SMB2_GLOBAL_CAP...
How severe is CVE-2021-45100?
CVE-2021-45100 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-45100?
Check the references section above for vendor advisories and patch information. Affected products include: Ksmbd Project Ksmbd, Linux Linux Kernel, Netapp H410C Firmware, Netapp H410C, Netapp H300S Firmware.