Security Advisory

CVE-2022-32746

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-08-25 00:00:00
Last updated 2024-08-03 07:46:45
Assigner redhat
State PUBLISHED

Description

A flaw was found in the Samba AD LDAP server. The AD DC database audit logging module can access LDAP message values freed by a preceding database module, resulting in a use-after-free issue. This issue is only possible when modifying certain privileged attributes, such as userAccountControl.