Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-25719

Опубликовано: 18 фев. 2022
Источник: ubuntu
Приоритет: medium
CVSS2: 9
CVSS3: 7.2

Описание

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

released

2:4.13.14+dfsg-0ubuntu1
esm-infra-legacy/trusty

ignored

changes too intrusive
esm-infra/bionic

ignored

changes too intrusive
esm-infra/focal

not-affected

2:4.13.14+dfsg-0ubuntu0.20.04.1
esm-infra/xenial

ignored

changes too intrusive
focal

released

2:4.13.14+dfsg-0ubuntu0.20.04.1
hirsute

released

2:4.13.14+dfsg-0ubuntu0.21.04.1
impish

released

2:4.13.14+dfsg-0ubuntu0.21.10.1
jammy

released

2:4.13.14+dfsg-0ubuntu1

Показывать по

9 Critical

CVSS2

7.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.2
redhat
больше 3 лет назад

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

CVSS3: 7.2
nvd
больше 3 лет назад

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

CVSS3: 7.2
msrc
10 месяцев назад

Описание отсутствует

CVSS3: 7.2
debian
больше 3 лет назад

A flaw was found in the way Samba, as an Active Directory Domain Contr ...

rocky
больше 3 лет назад

Moderate: idm:DL1 security update

9 Critical

CVSS2

7.2 High

CVSS3