Lucene search

K
redhatRedHatRHSA-2016:1494
HistoryJul 26, 2016 - 11:44 a.m.

(RHSA-2016:1494) Moderate: samba security update

2016-07-2611:44:33
access.redhat.com
20

0.005 Low

EPSS

Percentile

76.5%

Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.

Security Fix(es):

  • A flaw was found in the way Samba initiated signed DCE/RPC connections. A man-in-the-middle attacker could use this flaw to downgrade the connection to not use signing and therefore impersonate the server. (CVE-2016-2119)

Red Hat would like to thank the Samba project for reporting this issue. Upstream acknowledges Stefan Metzmacher as the original reporter.