漏洞类别:Debian
漏洞等级:
漏洞信息
Debian has released security update for samba to fix the vulnerabilities.
漏洞危害
A target server, which is present in the current or trusted domain/realm, can be given a valid general purpose Kerberos "Ticket Granting Ticket" (TGT), which can be used to fully impersonate the authenticated user or service. (CVE-2016-2125)
Exploitation of other vulnerabilities may cause a man-in-the-middle and privilege excalation
解决方案
Refer to Debian security advisory DSA 3740-1 to address this issue and obtain further details.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论