Description
The default LDAP ACIs in FreeIPA 3.0 before 3.1.2 do not restrict access to the (1) ipaNTTrustAuthIncoming and (2) ipaNTTrustAuthOutgoing attributes, which allow remote attackers to obtain the Cross-Realm Kerberos Trust key via unspecified vectors.
CVSS vector
AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9Complexity: Low
Integrity: None
Availability: None
Affected Packages1 packages
π΄Vulnerability Details
2GHSAGHSA-3gwj-28p7-3v2r: The default LDAP ACIs in FreeIPA 3β2022-05-05 βΆ CVEListCVE-2013-0199: The default LDAP ACIs in FreeIPA 3β2014-05-29 βΆ π₯Exploits & PoCs
1Exploit-DBMicrosoft Excel - OLE Arbitrary Code Executionβ2017-09-30 βΆ πVendor Advisories
1Red Hatipa: cross-realm kerberos with AD information leakβ2013-01-23 βΆ π¬Community
3BugzillaCVE-2013-0199 CVE-2012-4546 freeipa various flaws [fedora-all]β2013-01-23 βΆ BugzillaCVE-2013-0199 ipa: cross-realm kerberos with AD information leakβ2013-01-19 βΆ BugzillaCVE-2013-0170 libvirt: use-after-free in virNetMessageFree()β2013-01-09 βΆ