SARA / Free Tools / CVE / CVE-2024-3183

CVE-2024-3183 — A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypt

A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted using the target principal key d

CVSS
8.1 HIGH
EPSS
21.23% (top 4.40%)
CWE
CWE-916
Published
2024-06-12T08:18:51.691Z
Last modified
2025-11-20T07:16:16.609Z
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

01What is this vulnerability?

A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted using the target principal key directly. For user principals, this key is a hash of a public per-principal randomly-generated salt and the user’s…

02Affected products

VendorProductVersions
??4.12.1
Red HatRed Hat Enterprise Linux 70:4.6.8-5.el7_9.17
Red HatRed Hat Enterprise Linux 88100020240528133707.823393f5
Red HatRed Hat Enterprise Linux 8.2 Advanced Update Support8020020240530191103.792f4060
Red HatRed Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support8040020240528055121.5b01ab7e
Red HatRed Hat Enterprise Linux 8.4 Telecommunications Update Service8040020240528055121.5b01ab7e
Red HatRed Hat Enterprise Linux 8.4 Update Services for SAP Solutions8040020240528055121.5b01ab7e
Red HatRed Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support8060020240530061719.ada582f1
Red HatRed Hat Enterprise Linux 8.6 Telecommunications Update Service8060020240530061719.ada582f1
Red HatRed Hat Enterprise Linux 8.6 Update Services for SAP Solutions8060020240530061719.ada582f1
Red HatRed Hat Enterprise Linux 8.8 Extended Update Support8080020240530051744.b0a6ceea
Red HatRed Hat Enterprise Linux 90:4.11.0-15.el9_4
Red HatRed Hat Enterprise Linux 9.0 Extended Update Support0:4.9.8-11.el9_0.3
Red HatRed Hat Enterprise Linux 9.2 Extended Update Support0:4.10.1-12.el9_2.2
Red HatRed Hat Enterprise Linux 10unspecified

03Active exploitation status

Not currently listed on the CISA Known Exploited Vulnerabilities (KEV) catalog. EPSS is the best forward-looking signal — see the EPSS row above.

04Recommended remediation

05Technical details

For the full vendor write-up, exploit chains, and reference implementations, see the references list in section 09.

06Detection signatures

Open the Sigma generator with a pre-filled prompt for this CVE to draft a starting detection in your stack of choice:

Open in Sigma generator →

07Related CVEs

No directly-cited follow-up CVEs in the KB record for this advisory. The references list in section 09 carries the vendor cross-references.

08Timeline

09References

Want this in your SOAR or SIEM?
SARA's API returns EPSS, CVSS, KEV, and an analyst-grade summary in one call.
Read the API reference →