The Samba-Bugzilla – Dependency tree for
Bug 14834
[SECURITY] Andrew's Kerberos Concerns and other issues (Nov 9 2021 Release bug)
Home
|
New
|
Browse
|
Search
|
[?]
|
Reports
|
Requests
|
Help
|
New Account
|
Log In
[x]
|
Forgot Password
Login:
[x]
Max Depth:
Bug 14834
depends on 18 bugs:
view as bug list
14834:
[SECURITY] Andrew's Kerberos Concerns and other issues (Nov 9 2021 Release bug)
[RESOLVED FIXED; assigned to samba-qa; target: ---]
12444:
[SECURITY] CVE-2016-2124: don't fallback to non spnego authentication if we require kerberos in Samba client
[RESOLVED FIXED; assigned to janger; target: ---]
14468:
CVE-2021-3738 [SECURITY] crash in dsdb stack
[RESOLVED FIXED; assigned to janger; target: ---]
14725:
[SECURITY] Andrew's Kerberos Concerns (November 9 2021)
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14557:
CVE-2020-25721 [SECURITY] KDC canonicalisation and mapping rules: challenges and hardening
[ASSIGNED; assigned to abartlet; target: ---]
14835:
[SECURITY] Samba and Kerberos libs should support new UPN DNS info w/ samAccountName
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14556:
CVE-2020-25717 [SECURITY] A user on the domain can become root on domain members
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14801:
[SECURITY] Samba as a file server in an AD Domain without winbindd needs to trust usernames less
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14558:
CVE-2020-25718 [SECURITY] An RODC can issue (forge) administrator tickets to other servers
[RESOLVED FIXED; assigned to abartlet; target: ---]
14561:
CVE-2020-25719 [SECURITY] AD DC Username based races when no PAC is given
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14686:
[SECURITY] A helpdesk user able to create a machine account could take over the domain
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14873:
[SECURITY] Kerberos User2User is not secure
[RESOLVED FIXED; assigned to samba-qa; target: ---]
14564:
CVE-2020-25722 [SECURITY] AD DC UPN vs samAccountName not checked (top-level bug for AD DC validation issues)
[RESOLVED FIXED; assigned to dbagnall; target: ---]
14703:
[SECURITY] We should harden the rodc_join / LDAP_SERVER_RODC_DCPROMO_OID
[RESOLVED FIXED; assigned to jsutton; target: ---]
14833:
CVE-2022-32743 [SECURITY] Validated dnsHostname write right needs to be implemented
[RESOLVED FIXED; assigned to jsutton; target: ---]
14875:
CVE-2021-23192 [SECURITY] dcerpc requests don't check all fragments against the first auth_state
[RESOLVED FIXED; assigned to janger; target: ---]
Bug 14834
does not block any bugs.
Max Depth: