suse · CVE-2016-2124

Quick triage

Priority: medium Published: 2021-11-11 01:20:55 UTC Updated: 2026-04-18 17:59:40 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-2124 severity moderate: SUSE including 1133 source package names (amazon/suse-sles-15-sp1-chost-byos-v20210304-hvm-ssd-x86_64, amazon/suse-sles-15-sp1-chost-byos-v20220127-hvm-ssd-x86_64, …), 2898 product×package rows across 117 product lines (HPE Helion OpenStack 8, Image SLES12-SP5-Azure-BYOS, … (117 product lines)): Fixed 2712, Known Affected 160, Known Not Affected 26.

Description:

A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.

cvelogic Threat Intelligence