CyberRota Analysis
AI-GeneratedA vulnerability exists in Samba's internal DNS server that allows unauthenticated attackers to exploit TKEY registration requests, leading to cache exhaustion. This can disrupt legitimate TSIG authentication for signed DNS queries, resulting in a denial of service. Organizations using Samba's DNS services should prioritize addressing this issue to maintain service availability and security.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A flaw was found in Samba's internal DNS server where unauthenticated TKEY registration requests were added to the TKEY name cache before being rejected. A remote, unauthenticated attacker can exploit this behavior by sending a large number of TKEY requests with arbitrary names, exhausting the cache and evicting legitimate TKEY entries. This can prevent legitimate TSIG authentication for signed DNS queries, resulting in a denial of service.