Sunday, December 19, 2021

Centos Linux: CVE-2020-25719: Moderate: idm:DL1 security update (Multiple Advisories)

Description
A flaw was found in the way Samba, as an Active Directory Domain Controller, implemented Kerberos name-based authentication. The Samba AD DC, could become confused about the user a ticket represents if it did not strictly require a Kerberos PAC and always use the SIDs found within. The result could include total domain compromise.
Solution(s)
  • centos-upgrade-bind-dyndb-ldap
  • centos-upgrade-bind-dyndb-ldap-debuginfo
  • centos-upgrade-bind-dyndb-ldap-debugsource
  • centos-upgrade-custodia
  • centos-upgrade-ipa-client
  • centos-upgrade-ipa-client-common
  • centos-upgrade-ipa-client-debuginfo
  • centos-upgrade-ipa-client-epn
  • centos-upgrade-ipa-client-samba
  • centos-upgrade-ipa-common
  • centos-upgrade-ipa-debuginfo
  • centos-upgrade-ipa-debugsource
  • centos-upgrade-ipa-healthcheck
  • centos-upgrade-ipa-healthcheck-core
  • centos-upgrade-ipa-python-compat
  • centos-upgrade-ipa-selinux
  • centos-upgrade-ipa-server
  • centos-upgrade-ipa-server-common
  • centos-upgrade-ipa-server-debuginfo
  • centos-upgrade-ipa-server-dns
  • centos-upgrade-ipa-server-trust-ad
  • centos-upgrade-ipa-server-trust-ad-debuginfo
  • centos-upgrade-opendnssec
  • centos-upgrade-opendnssec-debuginfo
  • centos-upgrade-opendnssec-debugsource
  • centos-upgrade-python2-ipaclient
  • centos-upgrade-python2-ipalib
  • centos-upgrade-python2-ipaserver
  • centos-upgrade-python3-custodia
  • centos-upgrade-python3-ipaclient
  • centos-upgrade-python3-ipalib
  • centos-upgrade-python3-ipaserver
  • centos-upgrade-python3-ipatests
  • centos-upgrade-python3-jwcrypto
  • centos-upgrade-python3-kdcproxy
  • centos-upgrade-python3-pyusb
  • centos-upgrade-python3-qrcode
  • centos-upgrade-python3-qrcode-core
  • centos-upgrade-python3-yubico
  • centos-upgrade-slapi-nis
  • centos-upgrade-slapi-nis-debuginfo
  • centos-upgrade-slapi-nis-debugsource
  • centos-upgrade-softhsm
  • centos-upgrade-softhsm-debuginfo
  • centos-upgrade-softhsm-debugsource
  • centos-upgrade-softhsm-devel


  • References
  • CESA-2021:5142
  • CESA-2021:5195
  • CVE-2020-25719




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore