CVE-2020-25721

Description

Kerberos acceptors need easy access to stable AD identifiers (eg objectSid). Samba as an AD DC now provides a way for Linux applications to obtain a reliable SID (and samAccountName) in issued tickets.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.367

Associated Vulnerability

VulnerabilityOS Platform
samba security update(DSA-5003-1) samba_4.13.13+dfsg-1~deb11u2_amd64.debLinux
SMB/CIFS file, print, and login server for Unix (USN-5142-1) samba_4.13.14+dfsg-0ubuntu0.20.04.1_amd64.debLinux
SMB/CIFS file, print, and login server for Unix (USN-5142-1) samba_4.13.14+dfsg-0ubuntu0.21.04.1_amd64.debLinux
SMB/CIFS file, print, and login server for Unix (USN-5142-1) samba_4.13.14+dfsg-0ubuntu0.21.10.1_amd64.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234