CVE-2024-3183

CVE Details

Release Date:2024-06-10
Impact:Important What is this?

Description


A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client's session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted using the target principal key directly. For user principals, this key is a hash of a public per-principal randomly-generated salt and the user's password.\nIf a principal is compromised it means the attacker would be able to retrieve tickets encrypted to any principal, all of them being encrypted by their own key directly. By taking these tickets and salts offline, the attacker could run brute force attacks to find character strings able to decrypt tickets when combined to a principal salt (i.e. find the principal's password).

See more information about CVE-2024-3183 from MITRE CVE dictionary and NIST NVD


NOTE: The following CVSS metrics and score provided are preliminary and subject to review.


CVSS v3 metrics

Base Score: 8.1
Vector String: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Version: 3.0
Attack Vector: Network
Attack Complexity: Low
Privileges Required: Low
User Interaction: None
Scope: Unchanged
Confidentiality Impact: High
Integrity Impact: High
Availability Impact: None

Errata information


PlatformErrataRelease Date
Oracle Linux version 7 (ipa)ELSA-2024-37602024-06-10
Oracle Linux version 8 (bind-dyndb-ldap)ELSA-2024-37552024-06-11
Oracle Linux version 8 (custodia)ELSA-2024-37552024-06-11
Oracle Linux version 8 (ipa)ELSA-2024-37552024-06-11
Oracle Linux version 8 (ipa-healthcheck)ELSA-2024-37552024-06-11
Oracle Linux version 8 (opendnssec)ELSA-2024-37552024-06-11
Oracle Linux version 8 (python-jwcrypto)ELSA-2024-37552024-06-11
Oracle Linux version 8 (python-kdcproxy)ELSA-2024-37552024-06-11
Oracle Linux version 8 (python-qrcode)ELSA-2024-37552024-06-11
Oracle Linux version 8 (python-yubico)ELSA-2024-37552024-06-11
Oracle Linux version 8 (pyusb)ELSA-2024-37552024-06-11
Oracle Linux version 8 (slapi-nis)ELSA-2024-37552024-06-11
Oracle Linux version 8 (softhsm)ELSA-2024-37552024-06-11
Oracle Linux version 9 (ipa)ELSA-2024-37542024-06-10


This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections:

software.hardware.complete