CVE-2016-2119: Code Injection
libcli/smb/smbXclibase.c in Samba 4.x before 4.2.14, 4.3.x before 4.3.11, and 4.4.x before 4.4.5 allows man-in-the-middle attackers to bypass a client-signing protection mechanism, and consequently spoof SMB2 and SMB3 servers, via the (1) SMB2SESSIONFLAGISGUEST or (2) SMB2SESSIONFLAGISNULL flag.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-2119?
CVE-2016-2119 has a high severity rating due to its potential for exploitation by man-in-the-middle attackers.
How do I fix CVE-2016-2119?
To fix CVE-2016-2119, upgrade Samba to versions 4.2.14, 4.3.11, or 4.4.5 or later.
What versions of Samba are affected by CVE-2016-2119?
CVE-2016-2119 affects Samba versions prior to 4.2.14, 4.3.x before 4.3.11, and 4.4.x before 4.4.5.
What type of attack is CVE-2016-2119 associated with?
CVE-2016-2119 is associated with man-in-the-middle attacks that allow spoofing of SMB2 and SMB3 servers.
Can CVE-2016-2119 be exploited remotely?
Yes, CVE-2016-2119 can be remotely exploited by attackers to bypass client-signing protections.