vulnerability
Rocky Linux: CVE-2016-2124: samba (RLSA-2021-5082)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:P/I:N/A:N) | Feb 18, 2022 | Mar 12, 2024 | Mar 31, 2026 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Feb 18, 2022
Added
Mar 12, 2024
Modified
Mar 31, 2026
Description
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
Solutions
rocky-upgrade-ctdbrocky-upgrade-ctdb-debuginforocky-upgrade-libsmbclientrocky-upgrade-libsmbclient-debuginforocky-upgrade-libsmbclient-develrocky-upgrade-libwbclientrocky-upgrade-libwbclient-debuginforocky-upgrade-libwbclient-develrocky-upgrade-python3-sambarocky-upgrade-python3-samba-debuginforocky-upgrade-python3-samba-testrocky-upgrade-sambarocky-upgrade-samba-clientrocky-upgrade-samba-client-debuginforocky-upgrade-samba-client-libsrocky-upgrade-samba-client-libs-debuginforocky-upgrade-samba-common-libsrocky-upgrade-samba-common-libs-debuginforocky-upgrade-samba-common-toolsrocky-upgrade-samba-common-tools-debuginforocky-upgrade-samba-debuginforocky-upgrade-samba-debugsourcerocky-upgrade-samba-develrocky-upgrade-samba-krb5-printingrocky-upgrade-samba-krb5-printing-debuginforocky-upgrade-samba-libsrocky-upgrade-samba-libs-debuginforocky-upgrade-samba-testrocky-upgrade-samba-test-debuginforocky-upgrade-samba-test-libsrocky-upgrade-samba-test-libs-debuginforocky-upgrade-samba-vfs-iouringrocky-upgrade-samba-vfs-iouring-debuginforocky-upgrade-samba-winbindrocky-upgrade-samba-winbind-clientsrocky-upgrade-samba-winbind-clients-debuginforocky-upgrade-samba-winbind-debuginforocky-upgrade-samba-winbind-krb5-locatorrocky-upgrade-samba-winbind-krb5-locator-debuginforocky-upgrade-samba-winbind-modulesrocky-upgrade-samba-winbind-modules-debuginforocky-upgrade-samba-winexerocky-upgrade-samba-winexe-debuginfo
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.