Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Debian: DSA-3740-1 Critical: Samba Multiple Security Threats

debian
Calendar Grey December 19, 2016
Scroller Debian
- ------------------------------------------------------------------------- Debian Security Advisory
Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix

Summary

CVE-2016-2119

Stefan Metzmacher discovered that client-side SMB2/3 required
signing can be downgraded, allowing a man-in-the-middle attacker to
impersonate a server being connected to by Samba, and return
malicious results.

CVE-2016-2123

Trend Micro's Zero Day Initiative and Frederic Besler discovered
that the routine ndr_pull_dnsp_name, used to parse data from the
Samba Active Directory ldb database, contains an integer overflow
flaw, leading to an attacker-controlled memory overwrite. An
authenticated user can take advantage of this flaw for remote
privilege escalation.

CVE-2016-2125

Simo Sorce of Red Hat discovered that the Samba client code always
requests a forwardable ticket when using Kerberos authentication. A
target server, which must be in the current or trusted domain/realm,
is given a valid general purpose Kerberos "Ticket Granting Ticket"
(TGT), which can be used to fully impersonate the authenticated user
or service.

CVE-201...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: samba
CVE ID: CVE-2016-2119 CVE-2016-2123 CVE-2016-2125 CVE-2016-2126

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.