Back

CRITICAL

samba: Samba AD DC using Heimdal can be forced to issue rc4-hmac encrypted Kerberos tickets

Published Mar 6, 2023

Description

Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and per RFC8429 it is assumed that rc4-hmac is weak, Vulnerable Samba Active Directory DCs will issue rc4-hmac encrypted tickets despite the target server supporting better encryption (eg aes256-cts-hmac-sha1-96).

Affected products

Remediation

Red Hat statement

The samba package as shipped with Red Hat Enterprise Linux 6, 7, 8 and 9 and Red Hat Gluster is not affected by this issue as Red Hat doesn't provide the AD domain controller capability with it.

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 6, 2023
Updated Mar 6, 2025
Reserved Nov 10, 2022
CISA Vulnrichment
Updated Mar 6, 2025
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Dec 16, 2022
ENISA EUVD
Assigner redhat
Published Mar 6, 2023
Updated Mar 6, 2025
Exploited since n/a
EUVD-2022-48056