yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-0614
Component Overview
Vulnerability Overview
Name
CVE-2023-0614
Source
NVD (
link
)
Debian (
link
)
Description
The fix in 4.6.16, 4.7.9, 4.8.4 and 4.9.7 for CVE-2018-10919 Confidential attribute disclosure vi LDAP filters was insufficient and an attacker may be able to obtain confidential BitLocker recovery keys from a Samba AD DC.
CWEs
CWE-200
CWE-312
Published Date
Apr 3, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://security.netapp.com/advisory/ntap-20230406-0007/
Third Party Advisory
https://www.samba.org/samba/security/CVE-2023-0614.html
Vendor Advisory
https://security.netapp.com/advisory/ntap-20230406-0007/
Third Party Advisory
https://www.samba.org/samba/security/CVE-2023-0614.html
Vendor Advisory
Analysis
#
Affected Component
Analysis
samba
Exploitable
Vulnerability Ratings
#
6.5
CVSSv31
7.7
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
samba4
buildroot
2025.02.x
4.22.10
Not Affected
samba4
buildroot
master
4.24.3
Not Affected
samba4
openwrt
master
4.22.7-r3
Not Affected
samba4
openwrt
openwrt-25.12
4.22.7-r3
Not Affected
samba
yocto
master
4.23.5
Not Affected
samba
yocto
scarthgap
4.19.9
Not Affected