Loading HuntDB...

GHSA-g5hg-3x62-v52f

GitHub Security Advisory

⚠ Unreviewed CRITICAL Has CVE

Advisory Details

Since the Windows Kerberos RC4-HMAC Elevation of Privilege Vulnerability was disclosed by Microsoft on Nov 8 2022 and per RFC8429 it is assumed that rc4-hmac is weak, Vulnerable Samba Active Directory DCs will issue rc4-hmac encrypted tickets despite the target server supporting better encryption (eg aes256-cts-hmac-sha1-96).

Related CVEs

Key Information

GHSA ID
GHSA-g5hg-3x62-v52f
Published
March 7, 2023 12:30 AM
Last Modified
March 13, 2023 6:30 PM
CVSS Score
9.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 31, 2025 6:36 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.