Casey Smith on Twitter: "Just the description is scary “A flaw was found in Samba. The KDC accepts kpasswd requests encrypted with any key known to it. By encrypting forged kpasswd requests with its own key, a user can change other users' passwords, enabling full domain takeover.”" / Twitter

https://twitter.com/subtee/status/1589250212736176129