Description
Kerberos acceptors need easy access to stable AD identifiers (eg objectSid). Samba as an AD DC now provides a way for Linux applications to obtain a reliable SID (and samAccountName) in issued tickets.
Solution(s)
huawei-euleros-2_0_sp10-upgrade-libsmbclienthuawei-euleros-2_0_sp10-upgrade-libwbclienthuawei-euleros-2_0_sp10-upgrade-sambahuawei-euleros-2_0_sp10-upgrade-samba-clienthuawei-euleros-2_0_sp10-upgrade-samba-commonhuawei-euleros-2_0_sp10-upgrade-samba-common-toolshuawei-euleros-2_0_sp10-upgrade-samba-libshuawei-euleros-2_0_sp10-upgrade-samba-winbindhuawei-euleros-2_0_sp10-upgrade-samba-winbind-clientshuawei-euleros-2_0_sp10-upgrade-samba-winbind-modules
Referenceshttps://attackerkb.com/topics/cve-2020-25721CVE - 2020-25721EulerOS-SA-2022-1258