<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 03:08:55 +0000</lastBuildDate>
    <item>
      <title>CVE-2016-2124</title>
      <link>https://cve.radiocsirt.org/vuln/cve-2016-2124</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; samba&lt;/p&gt;
&lt;p&gt;A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; samba&lt;/p&gt;
&lt;p&gt;A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cve-2016-2124</guid>
    </item>
    <item>
      <title>USN-5142-1 — samba vulnerabilities</title>
      <link>https://cve.radiocsirt.org/vuln/usn-5142-1</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: samba&lt;/p&gt;
&lt;p&gt;Stefan Metzmacher discovered that Samba incorrectly handled SMB1 client
connections. A remote attacker could possibly use this issue to downgrade
connections to plaintext authentication. (CVE-2016-2124)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba incorrectly mapping domain users to
local users. An authenticated attacker could possibly use this issue to
become root on domain members. (CVE-2020-25717)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba did not correctly sandbox Kerberos
tickets issues by an RODC. An RODC could print administrator tickets,
contrary to expectations. (CVE-2020-25718)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba incorrectly handled Kerberos tickets.
Delegated administrators could possibly use this issue to impersonate
accounts, leading to total domain compromise. (CVE-2020-25719)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba did not provide stable AD
identifiers to Kerberos acceptors. (CVE-2020-25721)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba did not properly check sensitive
attributes. An authenticated attacker could possibly use this issue to
escalate privileges. (CVE-2020-25722)&lt;/p&gt;
&lt;p&gt;Stefan Metzmacher discovered that Samba incorrectly handled certain large
DCE/RPC requests. A remote attacker could possibly use this issue to
bypass signature requirements. (CVE-2021-23192)&lt;/p&gt;
&lt;p&gt;William Ross discovered that Samba incorrectly handled memory. A remote
attacker could use this issue to cause Samba to crash, resulting in a
denial of service, or possibly escalate privileges. (CVE-2021-3738)&lt;/p&gt;
&lt;p&gt;Jo…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:20.04:LTS: samba&lt;/p&gt;
&lt;p&gt;Stefan Metzmacher discovered that Samba incorrectly handled SMB1 client
connections. A remote attacker could possibly use this issue to downgrade
connections to plaintext authentication. (CVE-2016-2124)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba incorrectly mapping domain users to
local users. An authenticated attacker could possibly use this issue to
become root on domain members. (CVE-2020-25717)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba did not correctly sandbox Kerberos
tickets issues by an RODC. An RODC could print administrator tickets,
contrary to expectations. (CVE-2020-25718)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba incorrectly handled Kerberos tickets.
Delegated administrators could possibly use this issue to impersonate
accounts, leading to total domain compromise. (CVE-2020-25719)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba did not provide stable AD
identifiers to Kerberos acceptors. (CVE-2020-25721)&lt;/p&gt;
&lt;p&gt;Andrew Bartlett discovered that Samba did not properly check sensitive
attributes. An authenticated attacker could possibly use this issue to
escalate privileges. (CVE-2020-25722)&lt;/p&gt;
&lt;p&gt;Stefan Metzmacher discovered that Samba incorrectly handled certain large
DCE/RPC requests. A remote attacker could possibly use this issue to
bypass signature requirements. (CVE-2021-23192)&lt;/p&gt;
&lt;p&gt;William Ross discovered that Samba incorrectly handled memory. A remote
attacker could use this issue to cause Samba to crash, resulting in a
denial of service, or possibly escalate privileges. (CVE-2021-3738)&lt;/p&gt;
&lt;p&gt;Jo…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/usn-5142-1</guid>
    </item>
  </channel>
</rss>
