ZeroHour

CVE-2016-2124

CVSS 3.1
5.9 medium
EPSS
2%p77
Published
()
Modified
Description

A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.

Vendors
sambadebianfedoraprojectredhatcanonical
Products
samba, debian linux, fedora, codeready linux builder, gluster storage, openstack, virtualization host, enterprise linux, enterprise linux desktop, enterprise linux eus, enterprise linux for ibm z systems, enterprise linux for ibm z systems eus
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.