Kerberos acceptors need easy access to stable AD identifiers (eg objectSid). Samba as an AD DC now provides a way for Linux applications to obtain a reliable SID (and samAccountName) in issued tickets.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-25721.json"