Security Advisory

CVE-2020-25719

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-18 00:00:00
Last updated 2024-08-04 15:40:36
Assigner redhat
State PUBLISHED

Description

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.