CVE Database
/

CVE-2024-3183

Back to search

CVE-2024-3183

Published: Jun 12, 2024

Modified: Nov 20, 2025

PUBLISHED

CVSS v3.1

8.1

HIGH

Description

A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted using the target principal key directly. For user principals, this key is a hash of a public per-principal randomly-generated salt and the user’s password. If a principal is compromised it means the attacker would be able to retrieve tickets encrypted to any principal, all of them being encrypted by their own key directly. By taking these tickets and salts offline, the attacker could run brute force attacks to find character strings able to decrypt tickets when combined to a principal salt (i.e. find the principal’s password).

VendorProductVersions

Unknown

freeipa

unaffected
4.12.1

Red Hat

Red Hat Enterprise Linux 7

unaffected
0:4.6.8-5.el7_9.17 - < *

Red Hat

Red Hat Enterprise Linux 8

unaffected
8100020240528133707.823393f5 - < *

Red Hat

Red Hat Enterprise Linux 8.2 Advanced Update Support

unaffected
8020020240530191103.792f4060 - < *

Red Hat

Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support

unaffected
8040020240528055121.5b01ab7e - < *

Red Hat

Red Hat Enterprise Linux 8.4 Telecommunications Update Service

unaffected
8040020240528055121.5b01ab7e - < *

Red Hat

Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions

unaffected
8040020240528055121.5b01ab7e - < *

Red Hat

Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support

unaffected
8060020240530061719.ada582f1 - < *

Red Hat

Red Hat Enterprise Linux 8.6 Telecommunications Update Service

unaffected
8060020240530061719.ada582f1 - < *

Red Hat

Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions

unaffected
8060020240530061719.ada582f1 - < *

Red Hat

Red Hat Enterprise Linux 8.8 Extended Update Support

unaffected
8080020240530051744.b0a6ceea - < *

Red Hat

Red Hat Enterprise Linux 9

unaffected
0:4.11.0-15.el9_4 - < *

Red Hat

Red Hat Enterprise Linux 9.0 Extended Update Support

unaffected
0:4.9.8-11.el9_0.3 - < *

Red Hat

Red Hat Enterprise Linux 9.2 Extended Update Support

unaffected
0:4.10.1-12.el9_2.2 - < *

Red Hat

Red Hat Enterprise Linux 10

All versions

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Attack Vector

Network

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

None

References

RHSA-2024:3754
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3755
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3756
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3757
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3758
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3759
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3760
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3761
vendor-advisory
x_refsource_REDHAT
RHSA-2024:3775
vendor-advisory
x_refsource_REDHAT
RHBZ#2270685
issue-tracking
x_refsource_REDHAT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now