samba: Samba AD DC using Heimdal can be forced to issue rc4-hmac encrypted Kerberos tickets
Published Mar 6, 2023
9.8
CRITICALCVSS 3.1
EPSS 0.45%
Description
Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and per RFC8429 it is assumed that rc4-hmac is weak, Vulnerable Samba Active Directory DCs will issue rc4-hmac encrypted tickets despite the target server supporting better encryption (eg aes256-cts-hmac-sha1-96).
Affected products
- Vendor n/a Product Samba Defaultn/a
- Version Fixed in samba 4.15.13, samba 4.16.8, samba 4.15.13StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| n/a | Samba | n/a |
|
No data.
Red Hat Enterprise Linux 6
samba
Not affected
Red Hat Enterprise Linux 7
samba
Not affected
Red Hat Enterprise Linux 8
samba
Not affected
Red Hat Enterprise Linux 9
samba
Not affected
Red Hat Storage 3
samba
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 7 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 8 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 9 | samba | Not affected | n/a |
| Red Hat Storage 3 | samba | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
The samba package as shipped with Red Hat Enterprise Linux 6, 7, 8 and 9 and Red Hat Gluster is not affected by this issue as Red Hat doesn't provide the AD domain controller capability with it.
References (7)
- https://access.redhat.com/security/cve/CVE-2022-45141 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2154376 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-48056 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2022-45141
- https://security.gentoo.org/glsa/202309-06 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2022-45141
- https://www.samba.org/samba/security/CVE-2022-45141.html Vendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2022-45141 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=2154376 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2022-48056 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2022-45141 | ||
| https://security.gentoo.org/glsa/202309-06 | vendor-advisory | |
| https://www.cve.org/CVERecord?id=CVE-2022-45141 | ||
| https://www.samba.org/samba/security/CVE-2022-45141.html | Vendor Advisory |
Change history (0)
No recorded changes yet.