Red Hat Security Advisory 2016-0015-01

Discussion in 'News Aggregator' started by Packet Storm, 9 Jan 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-0015-01 - Samba is an open-source implementation of the Server Message Block or Common Internet File System protocol, which allows PC-compatible machines to share files, printers, and other information. A man-in-the-middle vulnerability was found in the way "connection signing" was implemented by Samba. A remote attacker could use this flaw to downgrade an existing Samba client connection and force the use of plain text. A missing access control flaw was found in Samba. A remote, authenticated attacker could use this flaw to view the current snapshot on a Samba share, despite not having DIRECTORY_LIST access rights.

    Continue reading...
     

Share This Page

Loading...