On a Samba 4 AD DC the LDAP server in all versions of Samba from 4.0.0 onwards incorrectly validates permissions to modify passwords over LDAP allowing authenticated users to change any other users' passwords, including administrative users and privileged service accounts (eg Domain Controllers).
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/103382 | vdb entry third party advisory |
https://www.debian.org/security/2018/dsa-4135 | third party advisory vendor advisory |
https://usn.ubuntu.com/3595-1/ | third party advisory vendor advisory |
http://www.securitytracker.com/id/1040494 | vdb entry third party advisory |
https://security.gentoo.org/glsa/201805-07 | third party advisory vendor advisory |
https://security.netapp.com/advisory/ntap-20180313-0001/ | third party advisory |
https://www.samba.org/samba/security/CVE-2018-1057.html | mitigation vendor advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=1553553 | issue tracking third party advisory |
https://www.synology.com/support/security/Synology_SA_18_08 | third party advisory |
https://lists.debian.org/debian-lts-announce/2019/04/msg00013.html | third party advisory mailing list |