CVE-2023-0922
published 2023-04-03CVE-2023-0922: The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
PriorityP429medium5.9CVSS 3.1
AVNACHPRNUINSUCHINAN
EPSS
0.48%
39.0th percentile
The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | samba | < samba 2:4.17.7+dfsg-1 (bookworm) | samba 2:4.17.7+dfsg-1 (bookworm) |
| msrc | azl3_samba_4.18.3-1_on_azure_linux_3.0 | — | — |
| msrc | azure_linux_3.0_arm | — | — |
| msrc | azure_linux_3.0_x64 | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | >= 0 < 2:4.17.7+dfsg-1 | 2:4.17.7+dfsg-1 |
| samba | samba | >= 0 < 2:4.17.7+dfsg-1 | 2:4.17.7+dfsg-1 |
| samba | samba | >= 0 < 2:4.17.7+dfsg-1 | 2:4.17.7+dfsg-1 |
| samba | samba | >= 0 < 2:4.15.13+dfsg-0ubuntu0.20.04.2 | 2:4.15.13+dfsg-0ubuntu0.20.04.2 |
| samba | samba | >= 0 < 2:4.15.13+dfsg-0ubuntu1.1 | 2:4.15.13+dfsg-0ubuntu1.1 |
| samba | samba | >= 4.0.0 < 4.16.10 | 4.16.10 |
| samba | samba | >= 4.17.0 < 4.17.7 | 4.17.7 |
CVSS provenance
nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
osv6.5MEDIUM
vendor_ubuntu6.5MEDIUM
vendor_debian5.9MEDIUM
vendor_msrc5.9MEDIUM
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-v9cf-pxq6-w297: The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only conne
ghsa_unreviewed·2023-04-04
CVE-2023-0922 [MEDIUM] CWE-319 GHSA-v9cf-pxq6-w297: The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only conne
The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
OSV
samba vulnerabilities
osv·2023-04-03·CVSS 6.5
CVE-2023-0614 [MEDIUM] samba vulnerabilities
samba vulnerabilities
Demi Marie Obenour discovered that the Samba LDAP server incorrectly
handled certain confidential attribute values. A remote authenticated
attacker could possibly use this issue to obtain certain sensitive
information. (CVE-2023-0614)
Andrew Bartlett discovered that the Samba AD DC admin tool incorrectly
sent passwords in cleartext. A remote attacker could possibly use this
issue to obtain sensitive information. (CVE-2023-0922)
OSV
CVE-2023-0922: The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only conne
osv·2023-04-03·CVSS 5.9
CVE-2023-0922 [MEDIUM] CVE-2023-0922: The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only conne
The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
Microsoft
The Samba AD DC administration tool when operating against a remote LDAP server will by default send new or reset passwords over a signed-only connection.
vendor_msrc·2023-04-11·CVSS 5.9
CVE-2023-0922 [MEDIUM] CWE-319 The Samba AD DC administration tool when operating against a remote LDAP server will by default send new or reset passwords over a signed-only connection.
The Samba AD DC administration tool when operating against a remote LDAP server will by default send new or reset passwords over a signed-only connection.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publishing CSAF/VEX in October 2025. See this blog post for more information. If impact to additional products is identified, we will update the CVE to reflect this.
Mariner: Mariner
redha
Ubuntu
Samba vulnerabilities
vendor_ubuntu·2023-04-03·CVSS 6.5
CVE-2023-0614 [MEDIUM] Samba vulnerabilities
Title: Samba vulnerabilities
Summary: Samba could be made to expose sensitive information over the network.
Demi Marie Obenour discovered that the Samba LDAP server incorrectly
handled certain confidential attribute values. A remote authenticated
attacker could possibly use this issue to obtain certain sensitive
information. (CVE-2023-0614)
Andrew Bartlett discovered that the Samba AD DC admin tool incorrectly
sent passwords in cleartext. A remote attacker could possibly use this
issue to obtain sensitive information. (CVE-2023-0922)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
samba: AD DC admin tool samba-tool sends passwords in cleartext
vendor_redhat·2023-03-29·CVSS 5.9
CVE-2023-0922 [MEDIUM] CWE-319 samba: AD DC admin tool samba-tool sends passwords in cleartext
samba: AD DC admin tool samba-tool sends passwords in cleartext
The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
A vulnerability was found in Samba. This security issue occurs in the Samba AD DC administration tool. When operating against a remote LDAP server, it will, by default, send new or reset passwords over a signed-only connection.
Statement: The samba package as shipped with Red Hat Enterprise Linux 6, 7, 8 and 9 and Red Hat Gluster is not affected by this issue as Red Hat doesn't provide the AD domain controller capability with it.
Package: samba (Red Hat Enterprise Linux 6) - Not affected
Package: samba (Red Hat Enterprise Linux 7) - Not affected
Package: samba (Red H
Debian
CVE-2023-0922: samba - The Samba AD DC administration tool, when operating against a remote LDAP server...
vendor_debian·2023·CVSS 5.9
CVE-2023-0922 [MEDIUM] CVE-2023-0922: samba - The Samba AD DC administration tool, when operating against a remote LDAP server...
The Samba AD DC administration tool, when operating against a remote LDAP server, will by default send new or reset passwords over a signed-only connection.
Scope: local
bookworm: resolved (fixed in 2:4.17.7+dfsg-1)
bullseye: open
forky: resolved (fixed in 2:4.17.7+dfsg-1)
sid: resolved (fixed in 2:4.17.7+dfsg-1)
trixie: resolved (fixed in 2:4.17.7+dfsg-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YXBPYIA4VWNOD437NAHZ3NXKAETLFB5S/https://security.gentoo.org/glsa/202309-06https://security.netapp.com/advisory/ntap-20230406-0007/https://www.samba.org/samba/security/CVE-2023-0922.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YXBPYIA4VWNOD437NAHZ3NXKAETLFB5S/https://security.gentoo.org/glsa/202309-06https://security.netapp.com/advisory/ntap-20230406-0007/https://www.samba.org/samba/security/CVE-2023-0922.html
2023-04-03
Published