CVE-2017-8495, also known as "Kerberos SNAME Security Feature Bypass Vulnerability" or Orpheus' Lyre, is a security feature bypass affecting various versions of Microsoft Windows and Windows Server. This vulnerability allows an attacker to bypass Extended Protection for Authentication by tampering with the SNAME field during Kerberos ticket exchange. With a CVSS score of 7.5 (HIGH), this vulnerability has a network attack vector, high attack complexity, and can lead to high confidentiality, integrity, and availability impacts. The EPSS score indicates a higher than average exploitability probability. There is no known active exploitation, nor is public exploit code available in Metasploit, Nuclei, or ExploitDB. However, the vulnerability has garnered significant community discussion and media coverage, with articles highlighting its patch in both Windows and Linux.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:* | ||
1511CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1511:*:*:*:*:*:*:* | ||
1607CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:* | ||
1703CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:* | ||
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.