This site is deprecated. Please
CLICK HERE for latest updates
Short Name |
SMB:EXPLOIT:CVE-2015-0240-RCE
|
Severity |
Major
|
Recommended |
Yes
|
Recommended Action |
Drop
|
Category |
SMB
|
Keywords |
Samba CVE-2015-0240 ServerPasswordSet Remote Code Execution
|
Release Date |
2015/03/02
|
Update Number |
2471
|
Supported Platforms |
idp-4.1.110110609+, isg-3.4.139899+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+
|
SMB: Samba CVE-2015-0240 ServerPasswordSet Remote Code Execution
This signature detects attempts to exploit a known vulnerability in Samba server. A remote, unauthenticated attacker could exploit this vulnerability by sending malicious request to the target Samba user.
Extended Description
The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.
Affected Products
- Canonical ubuntu_linux 12.04
- Canonical ubuntu_linux 14.04
- Canonical ubuntu_linux 14.10
- Novell suse_linux_enterprise_desktop 12
- Novell suse_linux_enterprise_server 12
- Novell suse_linux_enterprise_software_development_kit 12
- Redhat enterprise_linux 5
- Redhat enterprise_linux 6.0
- Redhat enterprise_linux 7.0
- Samba samba 3.5.0
- Samba samba 3.5.1
- Samba samba 3.5.10
- Samba samba 3.5.11
- Samba samba 3.5.12
- Samba samba 3.5.13
- Samba samba 3.5.14
- Samba samba 3.5.15
- Samba samba 3.5.16
- Samba samba 3.5.17
- Samba samba 3.5.18
- Samba samba 3.5.19
- Samba samba 3.5.2
- Samba samba 3.5.20
- Samba samba 3.5.21
- Samba samba 3.5.22
- Samba samba 3.5.3
- Samba samba 3.5.4
- Samba samba 3.5.5
- Samba samba 3.5.6
- Samba samba 3.5.7
- Samba samba 3.5.8
- Samba samba 3.5.9
- Samba samba 3.6.0
- Samba samba 3.6.1
- Samba samba 3.6.10
- Samba samba 3.6.11
- Samba samba 3.6.12
- Samba samba 3.6.13
- Samba samba 3.6.14
- Samba samba 3.6.15
- Samba samba 3.6.16
- Samba samba 3.6.17
- Samba samba 3.6.18
- Samba samba 3.6.19
- Samba samba 3.6.2
- Samba samba 3.6.20
- Samba samba 3.6.21
- Samba samba 3.6.22
- Samba samba 3.6.23
- Samba samba 3.6.24
- Samba samba 4.0.0
- Samba samba 4.0.1
- Samba samba 4.0.10
- Samba samba 4.0.11
- Samba samba 4.0.12
- Samba samba 4.0.13
- Samba samba 4.0.14
- Samba samba 4.0.15
- Samba samba 4.0.16
- Samba samba 4.0.17
- Samba samba 4.0.18
- Samba samba 4.0.19
- Samba samba 4.0.2
- Samba samba 4.0.20
- Samba samba 4.0.21
- Samba samba 4.0.22
- Samba samba 4.0.23
- Samba samba 4.0.24
- Samba samba 4.0.3
- Samba samba 4.0.4
- Samba samba 4.0.5
- Samba samba 4.0.6
- Samba samba 4.0.7
- Samba samba 4.0.8
- Samba samba 4.0.9
- Samba samba 4.1.0
- Samba samba 4.1.1
- Samba samba 4.1.10
- Samba samba 4.1.11
- Samba samba 4.1.12
- Samba samba 4.1.13
- Samba samba 4.1.14
- Samba samba 4.1.15
- Samba samba 4.1.16
- Samba samba 4.1.2
- Samba samba 4.1.3
- Samba samba 4.1.4
- Samba samba 4.1.5
- Samba samba 4.1.6
- Samba samba 4.1.7
- Samba samba 4.1.8
- Samba samba 4.1.9
- Samba samba 4.2.0
References