Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

SMB:EXPLOIT:CVE-2015-0240-RCE

Severity

Major

Recommended

Yes

Recommended Action

Drop

Category

SMB

Keywords

Samba CVE-2015-0240 ServerPasswordSet Remote Code Execution

Release Date

2015/03/02

Update Number

2471

Supported Platforms

idp-4.1.110110609+, isg-3.4.139899+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

SMB: Samba CVE-2015-0240 ServerPasswordSet Remote Code Execution


This signature detects attempts to exploit a known vulnerability in Samba server. A remote, unauthenticated attacker could exploit this vulnerability by sending malicious request to the target Samba user.

Extended Description

The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to execute arbitrary code via crafted Netlogon packets that use the ServerPasswordSet RPC API, as demonstrated by packets reaching the _netr_ServerPasswordSet function in rpc_server/netlogon/srv_netlog_nt.c.

Affected Products

  • Canonical ubuntu_linux 12.04
  • Canonical ubuntu_linux 14.04
  • Canonical ubuntu_linux 14.10
  • Novell suse_linux_enterprise_desktop 12
  • Novell suse_linux_enterprise_server 12
  • Novell suse_linux_enterprise_software_development_kit 12
  • Redhat enterprise_linux 5
  • Redhat enterprise_linux 6.0
  • Redhat enterprise_linux 7.0
  • Samba samba 3.5.0
  • Samba samba 3.5.1
  • Samba samba 3.5.10
  • Samba samba 3.5.11
  • Samba samba 3.5.12
  • Samba samba 3.5.13
  • Samba samba 3.5.14
  • Samba samba 3.5.15
  • Samba samba 3.5.16
  • Samba samba 3.5.17
  • Samba samba 3.5.18
  • Samba samba 3.5.19
  • Samba samba 3.5.2
  • Samba samba 3.5.20
  • Samba samba 3.5.21
  • Samba samba 3.5.22
  • Samba samba 3.5.3
  • Samba samba 3.5.4
  • Samba samba 3.5.5
  • Samba samba 3.5.6
  • Samba samba 3.5.7
  • Samba samba 3.5.8
  • Samba samba 3.5.9
  • Samba samba 3.6.0
  • Samba samba 3.6.1
  • Samba samba 3.6.10
  • Samba samba 3.6.11
  • Samba samba 3.6.12
  • Samba samba 3.6.13
  • Samba samba 3.6.14
  • Samba samba 3.6.15
  • Samba samba 3.6.16
  • Samba samba 3.6.17
  • Samba samba 3.6.18
  • Samba samba 3.6.19
  • Samba samba 3.6.2
  • Samba samba 3.6.20
  • Samba samba 3.6.21
  • Samba samba 3.6.22
  • Samba samba 3.6.23
  • Samba samba 3.6.24
  • Samba samba 4.0.0
  • Samba samba 4.0.1
  • Samba samba 4.0.10
  • Samba samba 4.0.11
  • Samba samba 4.0.12
  • Samba samba 4.0.13
  • Samba samba 4.0.14
  • Samba samba 4.0.15
  • Samba samba 4.0.16
  • Samba samba 4.0.17
  • Samba samba 4.0.18
  • Samba samba 4.0.19
  • Samba samba 4.0.2
  • Samba samba 4.0.20
  • Samba samba 4.0.21
  • Samba samba 4.0.22
  • Samba samba 4.0.23
  • Samba samba 4.0.24
  • Samba samba 4.0.3
  • Samba samba 4.0.4
  • Samba samba 4.0.5
  • Samba samba 4.0.6
  • Samba samba 4.0.7
  • Samba samba 4.0.8
  • Samba samba 4.0.9
  • Samba samba 4.1.0
  • Samba samba 4.1.1
  • Samba samba 4.1.10
  • Samba samba 4.1.11
  • Samba samba 4.1.12
  • Samba samba 4.1.13
  • Samba samba 4.1.14
  • Samba samba 4.1.15
  • Samba samba 4.1.16
  • Samba samba 4.1.2
  • Samba samba 4.1.3
  • Samba samba 4.1.4
  • Samba samba 4.1.5
  • Samba samba 4.1.6
  • Samba samba 4.1.7
  • Samba samba 4.1.8
  • Samba samba 4.1.9
  • Samba samba 4.2.0

References

  • BugTraq: 72711
  • CVE: CVE-2015-0240
  • URL: https://securityblog.redhat.com/2015/02/23/samba-vulnerability-cve-2015-0240/
  • URL: https://www.samba.org/samba/security/CVE-2015-0240

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out