Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-14870

Опубликовано: 10 дек. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.4
CVSS3: 5.4

Описание

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in any way, either S4U2Self or regular Kerberos authentication, by forcing all tickets for these clients to be non-forwardable. In AD this is implemented by a user attribute delegation_not_allowed (aka not-delegated), which translates to disallow-forwardable. However the Samba AD DC does not do that for S4U2Self and does set the forwardable flag even if the impersonated client has the not-delegated flag set.

РелизСтатусПримечание
bionic

released

2:4.7.6+dfsg~ubuntu-0ubuntu2.14
devel

released

2:4.11.5+dfsg-1ubuntu1
disco

released

2:4.10.0+dfsg-0ubuntu2.7
eoan

released

2:4.10.7+dfsg-0ubuntu2.3
esm-infra-legacy/trusty

released

2:4.3.11+dfsg-0ubuntu0.14.04.20+esm4
esm-infra/bionic

released

2:4.7.6+dfsg~ubuntu-0ubuntu2.14
esm-infra/xenial

released

2:4.3.11+dfsg-0ubuntu0.16.04.24
precise/esm

not-affected

trusty

ignored

end of standard support
trusty/esm

released

2:4.3.11+dfsg-0ubuntu0.14.04.20+esm4

Показывать по

EPSS

Процентиль: 89%
0.04669
Низкий

6.4 Medium

CVSS2

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
redhat
около 6 лет назад

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in any way, either S4U2Self or regular Kerberos authentication, by forcing all tickets for these clients to be non-forwardable. In AD this is implemented by a user attribute delegation_not_allowed (aka not-delegated), which translates to disallow-forwardable. However the Samba AD DC does not do that for S4U2Self and does set the forwardable flag even if the impersonated client has the not-delegated flag set.

CVSS3: 5.4
nvd
около 6 лет назад

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in any way, either S4U2Self or regular Kerberos authentication, by forcing all tickets for these clients to be non-forwardable. In AD this is implemented by a user attribute delegation_not_allowed (aka not-delegated), which translates to disallow-forwardable. However the Samba AD DC does not do that for S4U2Self and does set the forwardable flag even if the impersonated client has the not-delegated flag set.

CVSS3: 5.4
debian
около 6 лет назад

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11 ...

CVSS3: 5.4
github
больше 3 лет назад

All Samba versions 4.x.x before 4.9.17, 4.10.x before 4.10.11 and 4.11.x before 4.11.3 have an issue, where the S4U (MS-SFU) Kerberos delegation model includes a feature allowing for a subset of clients to be opted out of constrained delegation in any way, either S4U2Self or regular Kerberos authentication, by forcing all tickets for these clients to be non-forwardable. In AD this is implemented by a user attribute delegation_not_allowed (aka not-delegated), which translates to disallow-forwardable. However the Samba AD DC does not do that for S4U2Self and does set the forwardable flag even if the impersonated client has the not-delegated flag set.

CVSS3: 5.4
fstec
около 6 лет назад

Уязвимость пакета программ сетевого взаимодействия Samba, связанная с недостатками процедуры аутентификации, позволяющая нарушителю получить доступ к конфиденциальным данным и нарушить их целостность

EPSS

Процентиль: 89%
0.04669
Низкий

6.4 Medium

CVSS2

5.4 Medium

CVSS3