Samba SRVSVC RPC sec_io_acl Request Handling Heap Buffer Overflow
| Check Point Reference: | CPAI-2012-034 | |
| Date Published: | ||
| Severity: | ||
| Source: | ||
| Industry Reference(s): | CVE-2007-2446 | |
| Protection Provided by: |
Security Gateway
|
|
| Who is Vulnerable? Samba Team Samba 3.x, 3.0.25rc3 and prior | ||
| Vulnerability Description A heap-based buffer overflow vulnerability exists in the way Samba handles RPC messages. |
||
|
Vulnerability Details The vulnerability is due to a boundary error while performing specific RPC operations. Remote unauthenticated attackers can exploit this vulnerability by sending a specially crafted RPC request to the SRVSVC RPC interface. The vulnerability is due to a boundary error while performing specific RPC operations. |
Protection Overview
This protection will detect and block attempts to exploit this vulnerability.
To configure the defense, select your product from the list below and follow the related protection steps.