CVE-2022-38023 – Netlogon RPC Elevation of Privilege Vulnerability
https://notcve.org/view.php?id=CVE-2022-38023
Netlogon RPC Elevation of Privilege Vulnerability Vulnerabilidad de elevación de privilegios de Netlogon RPC A flaw was found in samba. The Netlogon RPC implementations may use the rc4-hmac encryption algorithm, which is considered weak and should be avoided even if the client supports more modern encryption types. This issue could allow an attacker who knows the plain text content communicated between the samba client and server to craft data with the same MD5 calculation and replace it without being detected. • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-38023 https://security.gentoo.org/glsa/202309-06 https://access.redhat.com/security/cve/CVE-2022-38023 https://bugzilla.redhat.com/show_bug.cgi?id=2154362 • CWE-328: Use of Weak Hash •
CVE-2022-41053 – Windows Kerberos Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2022-41053
Windows Kerberos Denial of Service Vulnerability Vulnerabilidad de denegación de servicio de Windows Kerberos • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41053 •
CVE-2022-41056 – Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2022-41056
Network Policy Server (NPS) RADIUS Protocol Denial of Service Vulnerability Vulnerabilidad de denegación de servicio del protocolo RADIUS del servidor de políticas de red (NPS) • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41056 •
CVE-2022-41058 – Windows Network Address Translation (NAT) Denial of Service Vulnerability
https://notcve.org/view.php?id=CVE-2022-41058
Windows Network Address Translation (NAT) Denial of Service Vulnerability Vulnerabilidad de denegación de servicio de Traducción de Direcciones de Red (NAT) de Windows • https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-41058 •
CVE-2022-41064 – .NET Framework Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2022-41064
.NET Framework Information Disclosure Vulnerability Vulnerabilidad de divulgación de información de .NET Framework • https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2022-41064 •