Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-25719

Опубликовано: 18 фев. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 9
CVSS3: 7.2

Описание

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

released

2:4.13.14+dfsg-0ubuntu1
esm-infra-legacy/trusty

ignored

changes too intrusive
esm-infra/bionic

ignored

changes too intrusive
esm-infra/focal

released

2:4.13.14+dfsg-0ubuntu0.20.04.1
esm-infra/xenial

ignored

changes too intrusive
focal

released

2:4.13.14+dfsg-0ubuntu0.20.04.1
hirsute

released

2:4.13.14+dfsg-0ubuntu0.21.04.1
impish

released

2:4.13.14+dfsg-0ubuntu0.21.10.1
jammy

released

2:4.13.14+dfsg-0ubuntu1

Показывать по

EPSS

Процентиль: 47%
0.00241
Низкий

9 Critical

CVSS2

7.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.2
redhat
около 4 лет назад

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

CVSS3: 7.2
nvd
почти 4 года назад

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

CVSS3: 7.2
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 7.2
debian
почти 4 года назад

A flaw was found in the way Samba, as an Active Directory Domain Contr ...

rocky
около 4 лет назад

Moderate: idm:DL1 security update

EPSS

Процентиль: 47%
0.00241
Низкий

9 Critical

CVSS2

7.2 High

CVSS3