CVE-2023-0614

CVSS V2 None CVSS V3 None
Description
The fix in 4.6.16, 4.7.9, 4.8.4 and 4.9.7 for CVE-2018-10919 Confidential attribute disclosure vi LDAP filters was insufficient and an attacker may be able to obtain confidential BitLocker recovery keys from a Samba AD DC.
Overview
  • CVE ID
  • CVE-2023-0614
  • Assigner
  • secalert@redhat.com
  • Vulnerability Status
  • Undergoing Analysis
  • Published Version
  • 2023-04-03T23:15:06
  • Last Modified Date
  • 2023-04-16T04:15:08
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:* 1 OR 4.0.0 4.6.16
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:* 1 OR 4.7.0 4.7.9
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:* 1 OR 4.8.0 4.8.4
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:* 1 OR 4.9.0 4.9.4
History
Created Old Value New Value Data Type Notes
2023-04-17 04:03:52 Added to TrackCVE
2023-04-17 04:03:54 Weakness Enumeration new