First published: Thu Sep 01 2022(Updated: )
Samba does not validate the Validated-DNS-Host-Name right for the dNSHostName attribute which could permit unprivileged users to write it.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Samba Samba | >=4.1.0 | |
Fedoraproject Fedora | =37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this Samba vulnerability is CVE-2022-32743.
The severity of CVE-2022-32743 is high with a CVSS score of 7.5.
The affected software for this vulnerability is Samba version 4.1.0 and later, and Fedora version 37.
CVE-2022-32743 is a vulnerability in Samba that allows unprivileged users to write the dNSHostName attribute without proper validation of the Validated-DNS-Host-Name right.
To fix CVE-2022-32743, update Samba to a version that includes the necessary patches or apply the recommended security updates provided by the vendor.