CVE-2022-45141 is a critical vulnerability affecting Samba Active Directory Domain Controllers, stemming from a weakness in their Kerberos implementation. Despite the availability of stronger encryption, vulnerable DCs will issue RC4-HMAC encrypted tickets, which is considered weak per RFC8429, even when target servers support more robust algorithms like AES256. With a CVSS score of 9.8 (CRITICAL), this vulnerability poses a significant risk due to its network-based attack vector, low attack complexity, and potential for complete compromise of confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion, indicating a low current exploitation status.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 4.15.13CPE matchmatch criteria | cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:* | ||
>= 4.16.0, < 4.16.8CPE matchmatch criteria | cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
CVE-2022-45141
Oct 8, 2024Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and per RFC8429 it is assumed that rc4-hmac is weak Vulnerable Samba Active Directory DCs will issue rc4-hmac encrypted tickets despite the target server supporting better encryption (eg aes256-cts-hmac-sha1-96).
Mar 14, 2023samba: Samba AD DC using Heimdal can be forced to issue rc4-hmac encrypted Kerberos tickets
Dec 16, 2022