A flaw was found in Samba. The KDC accepts kpasswd...
High severity
Unreviewed
Published
Aug 26, 2022
to the GitHub Advisory Database
•
Updated Sep 17, 2023
Description
Published by the National Vulnerability Database
Aug 25, 2022
Published to the GitHub Advisory Database
Aug 26, 2022
Last updated
Sep 17, 2023
A flaw was found in Samba. The KDC accepts kpasswd requests encrypted with any key known to it. By encrypting forged kpasswd requests with its own key, a user can change other users' passwords, enabling full domain takeover.
References