Back to search
CVE-2010-1635
Published: Jun 17, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
The chain_reply function in process.c in smbd in Samba before 3.4.8 and 3.5.x before 3.5.2 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) via a Negotiate Protocol request with a certain 0x0003 field value followed by a Session Setup AndX request with a certain 0x8003 field value.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://samba.org/samba/history/samba-3.4.8.html
x_refsource_CONFIRM
MDVSA-2010:141
vendor-advisory
x_refsource_MANDRIVA
http://samba.org/samba/history/samba-3.5.2.html
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=594921
x_refsource_CONFIRM
https://bugzilla.samba.org/show_bug.cgi?id=7229
x_refsource_CONFIRM
40097
vdb-entry
x_refsource_BID
http://security-tracker.debian.org/tracker/CVE-2010-1635
x_refsource_CONFIRM
ADV-2010-1933
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now