Wind River Support Network

HomeDefectsLIN7-8697
Fixed

LIN7-8697 : Security Advisory - samba - CVE-2016-2125

Created: Aug 28, 2017    Updated: Feb 2, 2019
Resolved Date: Sep 21, 2017
Found In Version: 7.0.0.26
Fix Version: 7.0.0.27
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

Samba client code always requests a forwardable ticket when using Kerberos authentication. This means the target server, which must be in the current or trusted domain/realm, is given a valid general purpose Kerberos "Ticket Granting Ticket" (TGT), which can be used to fully impersonate the authenticated user or service.

https://nvd.nist.gov/vuln/detail/CVE-2016-2125 

Other Downloads


CVEs


Live chat
Online