CVE-2020-25718: Fedoraproject Fedora

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

A flaw was found in the way samba, as an Active Directory Domain Controller, is able to support an RODC (read-only domain controller). This would allow an RODC to print administrator tickets.

Affected products

  • Fedoraproject Fedora: version 35 only
  • Samba Samba: from 4.0.0, before 4.13.14 (fixed in 4.13.14); from 4.14.0, before 4.14.10 (fixed in 4.14.10); from 4.15.0, before 4.15.2 (fixed in 4.15.2)

Published 2022-02-18. Last modified 2026-06-17.