Lucene search

K
sambaSamba SecuritySAMBA:CVE-2018-16853
HistoryNov 27, 2018 - 12:00 a.m.

Samba AD DC S4U2Self Crash in experimental

2018-11-2700:00:00
Samba Security
www.samba.org
23

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.042 Low

EPSS

Percentile

92.3%

Description

A user in a Samba AD domain can crash the KDC when Samba is built in
the non-default MIT Kerberos configuration.

With this advisory we clarify that the MIT Kerberos build of the Samba
AD DC is considered experimental. Therefore the Samba Team will not
issue security patches for this configuration.

Patch Availability

Patches addressing parts of this issue have been posted to:

https://bugzilla.samba.org/show_bug.cgi?id=13571

Additionally, Samba 4.7.12, 4.8.7 and 4.9.3 have been issued as
security releases to prevent building of the AD DC with MIT Kerberos
unless --with-experimental-mit-ad-dc is specified to the configure
command. Samba administrators are advised to recompile Samba with the
default internal Heimdal Kerberos build as soon as possible by
removing --with-system-mitkrb5 from the configure command and
rebuilding Samba.

Workaround and mitigation

The default Heimdal build of Samba is not vulnerable.

Credits

Originally reported by Isaac Boukris.

Patches to disable the build provided by Andrew Bartlett of Catalyst
and the Samba team.

== Our Code, Our Bugs, Our Responsibility.
== The Samba Team

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

0.042 Low

EPSS

Percentile

92.3%