Back to search
CVE-2010-1642
Published: Jun 17, 2010
Modified: Aug 7, 2024
PUBLISHED
Description
The reply_sesssetup_and_X_spnego function in sesssetup.c in smbd in Samba before 3.4.8 and 3.5.x before 3.5.2 allows remote attackers to trigger an out-of-bounds read, and cause a denial of service (process crash), via a \xff\xff security blob length in a Session Setup AndX request.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://samba.org/samba/history/samba-3.4.8.html
x_refsource_CONFIRM
MDVSA-2010:141
vendor-advisory
x_refsource_MANDRIVA
http://samba.org/samba/history/samba-3.5.2.html
x_refsource_CONFIRM
https://bugzilla.redhat.com/show_bug.cgi?id=594921
x_refsource_CONFIRM
http://security-tracker.debian.org/tracker/CVE-2010-1642
x_refsource_CONFIRM
https://bugzilla.samba.org/show_bug.cgi?id=7254
x_refsource_CONFIRM
40097
vdb-entry
x_refsource_BID
ADV-2010-1933
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now