Rapid7 Vulnerability & Exploit Database

SUSE: CVE-2020-25721: SUSE Linux Security Advisory

Back to Search

SUSE: CVE-2020-25721: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:P/I:P/A:P)
Published
11/10/2021
Created
11/13/2021
Added
11/11/2021
Modified
03/24/2022

Description

Kerberos acceptors need easy access to stable AD identifiers (eg objectSid). Samba as an AD DC now provides a way for Linux applications to obtain a reliable SID (and samAccountName) in issued tickets.

Solution(s)

  • suse-upgrade-apache2-mod_apparmor
  • suse-upgrade-apparmor-docs
  • suse-upgrade-apparmor-parser
  • suse-upgrade-apparmor-profiles
  • suse-upgrade-apparmor-utils
  • suse-upgrade-ca-certificates
  • suse-upgrade-ctdb
  • suse-upgrade-ctdb-pcp-pmda
  • suse-upgrade-ctdb-tests
  • suse-upgrade-ldb-tools
  • suse-upgrade-libapparmor-devel
  • suse-upgrade-libapparmor1
  • suse-upgrade-libapparmor1-32bit
  • suse-upgrade-libdcerpc-binding0
  • suse-upgrade-libdcerpc-binding0-32bit
  • suse-upgrade-libdcerpc-binding0-64bit
  • suse-upgrade-libdcerpc-devel
  • suse-upgrade-libdcerpc-samr-devel
  • suse-upgrade-libdcerpc-samr0
  • suse-upgrade-libdcerpc-samr0-32bit
  • suse-upgrade-libdcerpc-samr0-64bit
  • suse-upgrade-libdcerpc0
  • suse-upgrade-libdcerpc0-32bit
  • suse-upgrade-libdcerpc0-64bit
  • suse-upgrade-libgnutls30
  • suse-upgrade-libgnutls30-32bit
  • suse-upgrade-libhogweed4
  • suse-upgrade-libhogweed4-32bit
  • suse-upgrade-libipa_hbac-devel
  • suse-upgrade-libipa_hbac0
  • suse-upgrade-libldb-devel
  • suse-upgrade-libldb2
  • suse-upgrade-libldb2-32bit
  • suse-upgrade-libndr-devel
  • suse-upgrade-libndr-krb5pac-devel
  • suse-upgrade-libndr-krb5pac0
  • suse-upgrade-libndr-krb5pac0-32bit
  • suse-upgrade-libndr-krb5pac0-64bit
  • suse-upgrade-libndr-nbt-devel
  • suse-upgrade-libndr-nbt0
  • suse-upgrade-libndr-nbt0-32bit
  • suse-upgrade-libndr-nbt0-64bit
  • suse-upgrade-libndr-standard-devel
  • suse-upgrade-libndr-standard0
  • suse-upgrade-libndr-standard0-32bit
  • suse-upgrade-libndr-standard0-64bit
  • suse-upgrade-libndr1
  • suse-upgrade-libndr1-32bit
  • suse-upgrade-libndr1-64bit
  • suse-upgrade-libnetapi-devel
  • suse-upgrade-libnetapi-devel-32bit
  • suse-upgrade-libnetapi-devel-64bit
  • suse-upgrade-libnetapi0
  • suse-upgrade-libnetapi0-32bit
  • suse-upgrade-libnetapi0-64bit
  • suse-upgrade-libnettle6
  • suse-upgrade-libnettle6-32bit
  • suse-upgrade-libp11-kit0
  • suse-upgrade-libp11-kit0-32bit
  • suse-upgrade-libsamba-credentials-devel
  • suse-upgrade-libsamba-credentials0
  • suse-upgrade-libsamba-credentials0-32bit
  • suse-upgrade-libsamba-credentials0-64bit
  • suse-upgrade-libsamba-errors-devel
  • suse-upgrade-libsamba-errors0
  • suse-upgrade-libsamba-errors0-32bit
  • suse-upgrade-libsamba-errors0-64bit
  • suse-upgrade-libsamba-hostconfig-devel
  • suse-upgrade-libsamba-hostconfig0
  • suse-upgrade-libsamba-hostconfig0-32bit
  • suse-upgrade-libsamba-hostconfig0-64bit
  • suse-upgrade-libsamba-passdb-devel
  • suse-upgrade-libsamba-passdb0
  • suse-upgrade-libsamba-passdb0-32bit
  • suse-upgrade-libsamba-passdb0-64bit
  • suse-upgrade-libsamba-policy-devel
  • suse-upgrade-libsamba-policy-python3-devel
  • suse-upgrade-libsamba-policy0-python3
  • suse-upgrade-libsamba-policy0-python3-32bit
  • suse-upgrade-libsamba-policy0-python3-64bit
  • suse-upgrade-libsamba-util-devel
  • suse-upgrade-libsamba-util0
  • suse-upgrade-libsamba-util0-32bit
  • suse-upgrade-libsamba-util0-64bit
  • suse-upgrade-libsamdb-devel
  • suse-upgrade-libsamdb0
  • suse-upgrade-libsamdb0-32bit
  • suse-upgrade-libsamdb0-64bit
  • suse-upgrade-libsmbclient-devel
  • suse-upgrade-libsmbclient0
  • suse-upgrade-libsmbclient0-32bit
  • suse-upgrade-libsmbclient0-64bit
  • suse-upgrade-libsmbconf-devel
  • suse-upgrade-libsmbconf0
  • suse-upgrade-libsmbconf0-32bit
  • suse-upgrade-libsmbconf0-64bit
  • suse-upgrade-libsmbldap-devel
  • suse-upgrade-libsmbldap2
  • suse-upgrade-libsmbldap2-32bit
  • suse-upgrade-libsmbldap2-64bit
  • suse-upgrade-libsss_certmap0
  • suse-upgrade-libsss_idmap-devel
  • suse-upgrade-libsss_idmap0
  • suse-upgrade-libsss_nss_idmap-devel
  • suse-upgrade-libsss_nss_idmap0
  • suse-upgrade-libsss_simpleifp0
  • suse-upgrade-libtevent-util-devel
  • suse-upgrade-libtevent-util0
  • suse-upgrade-libtevent-util0-32bit
  • suse-upgrade-libtevent-util0-64bit
  • suse-upgrade-libwbclient-devel
  • suse-upgrade-libwbclient0
  • suse-upgrade-libwbclient0-32bit
  • suse-upgrade-libwbclient0-64bit
  • suse-upgrade-p11-kit
  • suse-upgrade-p11-kit-32bit
  • suse-upgrade-p11-kit-devel
  • suse-upgrade-p11-kit-nss-trust
  • suse-upgrade-p11-kit-tools
  • suse-upgrade-pam_apparmor
  • suse-upgrade-pam_apparmor-32bit
  • suse-upgrade-perl-apparmor
  • suse-upgrade-python-sssd-config
  • suse-upgrade-python3-ldb
  • suse-upgrade-python3-ldb-32bit
  • suse-upgrade-python3-ldb-devel
  • suse-upgrade-samba
  • suse-upgrade-samba-ad-dc
  • suse-upgrade-samba-ad-dc-32bit
  • suse-upgrade-samba-ad-dc-64bit
  • suse-upgrade-samba-ceph
  • suse-upgrade-samba-client
  • suse-upgrade-samba-client-32bit
  • suse-upgrade-samba-client-64bit
  • suse-upgrade-samba-client-libs
  • suse-upgrade-samba-client-libs-32bit
  • suse-upgrade-samba-core-devel
  • suse-upgrade-samba-devel
  • suse-upgrade-samba-devel-32bit
  • suse-upgrade-samba-doc
  • suse-upgrade-samba-dsdb-modules
  • suse-upgrade-samba-gpupdate
  • suse-upgrade-samba-ldb-ldap
  • suse-upgrade-samba-libs
  • suse-upgrade-samba-libs-32bit
  • suse-upgrade-samba-libs-64bit
  • suse-upgrade-samba-libs-python3
  • suse-upgrade-samba-libs-python3-32bit
  • suse-upgrade-samba-libs-python3-64bit
  • suse-upgrade-samba-python3
  • suse-upgrade-samba-test
  • suse-upgrade-samba-tool
  • suse-upgrade-samba-winbind
  • suse-upgrade-samba-winbind-32bit
  • suse-upgrade-samba-winbind-64bit
  • suse-upgrade-samba-winbind-libs
  • suse-upgrade-samba-winbind-libs-32bit
  • suse-upgrade-sssd
  • suse-upgrade-sssd-ad
  • suse-upgrade-sssd-common
  • suse-upgrade-sssd-dbus
  • suse-upgrade-sssd-ipa
  • suse-upgrade-sssd-krb5
  • suse-upgrade-sssd-krb5-common
  • suse-upgrade-sssd-ldap
  • suse-upgrade-sssd-proxy
  • suse-upgrade-sssd-tools
  • suse-upgrade-yast2-samba-client

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;