Rewterz
Rewterz Threat Advisory – CVE-2022-33684 – Apache Pulsar C++ Client Vulnerability
November 8, 2022
Rewterz
Rewterz Threat Alert – Donot APT Group – Active IOCs
November 8, 2022

Rewterz Threat Advisory – CVE-2022-32744 – Samba Vulnerability

Severity

High

Analysis Summary

CVE-2022-32744

Samba could allow a remote authenticated attacker to bypass security restrictions, caused by a flaw in the kpasswd service. By sending a specially-crafted ticket, an attacker could exploit this vulnerability to change the password of the Administrator account and gain total control over the domain.

Impact

Security Bypass

Indicators Of Compromise

CVE

  • CVE-2022-32744

Affected Vendors

Samba

Affected Products

  • Samba 4.3.0
  • Samba 4.14
  • Samba 4.15
  • Samba 4.16

Remediation

Refer to Samba Website for patch, upgrade or suggested workaround information.

Samba Website