Elevation of Privilege Vulnerability in Samba Active Directory
CVE-2022-45141
What is CVE-2022-45141?
The Samba Active Directory Domain Controllers are susceptible to an elevation of privilege vulnerability due to the use of the rc4-hmac encryption algorithm. Despite the presence of better encryption options such as aes256-cts-hmac-sha1-96, vulnerable Samba DCs can issue rc4-hmac encrypted tickets. This flaw arises from the deprecation of rc4-hmac as weak encryption as established by RFC8429, presenting a risk for unauthorized access and exploitation. Organizations must assess their systems to mitigate associated risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Samba Fixed in samba 4.15.13, samba 4.16.8, samba 4.15.13
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved
