CVE-2016-2124
Summary
| CVE | CVE-2016-2124 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-02-18 18:15:00 UTC |
| Updated | 2023-09-17 09:15:00 UTC |
| Description | A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| 2019660 – (CVE-2016-2124) CVE-2016-2124 samba: SMB1 client connections can be downgraded to plaintext authentication |
MISC |
bugzilla.redhat.com |
Issue Tracking, Patch, Third Party Advisory |
| [SECURITY] [DLA 3563-1] samba security update |
MLIST |
lists.debian.org |
|
| Samba: Multiple Vulnerabilities (GLSA 202309-06) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| Samba - Security Announcement Archive |
MISC |
www.samba.org |
Mitigation, Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159551 Oracle Enterprise Linux Security Update for samba (ELSA-2021-5082)
- 159571 Oracle Enterprise Linux Security Update for samba (ELSA-2021-5192)
- 178884 Debian Security Update for samba (DSA 5003-1)
- 198583 Ubuntu Security Notification for Samba Vulnerability (USN-5142-1)
- 198596 Ubuntu Security Notification for Samba Vulnerabilities (USN-5174-1)
- 239912 Red Hat Update for samba (RHSA-2021:4843)
- 239913 Red Hat Update for samba (RHSA-2021:4844)
- 239961 Red Hat Update for samba (RHSA-2021:5082)
- 239968 Red Hat Update for samba (RHSA-2021:5192)
- 239984 Red Hat Update for samba (RHSA-2022:0008)
- 239996 Red Hat Update for samba (RHSA-2022:0074)
- 257139 CentOS Security Update for samba (CESA-2021:5192)
- 282091 Fedora Security Update for freeipa (FEDORA-2021-1d77047c61)
- 282156 Fedora Security Update for freeipa (FEDORA-2021-12af2614da)
- 296061 Oracle Solaris 11.4 Support Repository Update (SRU) 42.113.1 Missing (CPUJAN2022)
- 353170 Amazon Linux Security Advisory for samba : ALAS-2022-1564
- 354310 Amazon Linux Security Advisory for samba : ALAS2022-2022-022
- 354496 Amazon Linux Security Advisory for samba : ALAS2022-2022-224
- 354550 Amazon Linux Security Advisory for samba : ALAS-2022-224
- 376983 Alibaba Cloud Linux Security Update for samba (ALINUX2-SA-2021:0071)
- 501490 Alpine Linux Security Update for samba
- 501779 Alpine Linux Security Update for samba
- 502027 Alpine Linux Security Update for samba
- 504394 Alpine Linux Security Update for samba
- 6000093 Debian Security Update for samba (DLA 3563-1)
- 671280 EulerOS Security Update for samba (EulerOS-SA-2022-1246)
- 671315 EulerOS Security Update for samba (EulerOS-SA-2022-1258)
- 671342 EulerOS Security Update for samba (EulerOS-SA-2022-1282)
- 671372 EulerOS Security Update for samba (EulerOS-SA-2022-1295)
- 671384 EulerOS Security Update for samba (EulerOS-SA-2022-1311)
- 671687 EulerOS Security Update for samba (EulerOS-SA-2022-1763)
- 690244 Free Berkeley Software Distribution (FreeBSD) Security Update for samba (646923b0-41c7-11ec-a3b2-005056a311d1)
- 710751 Gentoo Linux Samba Multiple Vulnerabilities (GLSA 202309-06)
- 751344 OpenSUSE Security Update for samba (openSUSE-SU-2021:3650-1)
- 751345 OpenSUSE Security Update for samba and ldb (openSUSE-SU-2021:3647-1)
- 751352 OpenSUSE Security Update for samba (openSUSE-SU-2021:1471-1)
- 751356 OpenSUSE Security Update for samba (openSUSE-SU-2021:3674-1)
- 751359 SUSE Enterprise Linux Security Update for samba (SUSE-SU-2021:3649-1)
- 751379 SUSE Enterprise Linux Security Update for samba (SUSE-SU-2021:3747-1)
- 751380 SUSE Enterprise Linux Security Update for samba (SUSE-SU-2021:3674-1)
- 751390 SUSE Enterprise Linux Security Update for samba (SUSE-SU-2021:3746-1)
- 901020 Common Base Linux Mariner (CBL-Mariner) Security Update for samba (8649)
- 940212 AlmaLinux Security Update for samba (ALSA-2021:5082)
- 960801 Rocky Linux Security Update for samba (RLSA-2021:5082)