ISOMAN

CVE

CVE-2020-25719

A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.

Severity
HIGH
CVSS
7.2
Published
Modified

Linked Releases

DistributionReleaseStatusEvidence
Ubuntu20.04.6 amd64 desktopunknownsource
Ubuntu20.04.6 amd64 live-serverunknownsource

References

  1. https://bugzilla.redhat.com/show_bug.cgi?id=2019732
  2. https://security.gentoo.org/glsa/202309-06
  3. https://www.samba.org/samba/security/CVE-2020-25719.html
  4. https://bugzilla.redhat.com/show_bug.cgi?id=2019732
  5. https://security.gentoo.org/glsa/202309-06
  6. https://www.samba.org/samba/security/CVE-2020-25719.html