Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Samba SMB/CIFS Packet Assembling Buffer Overflow Vulnerability

Samba is prone to a buffer-overflow vulnerability when the 'smbd' service tries to reassemble specially crafted SMB/CIFS packets.

An attacker can exploit this vulnerability by creating a specially formatted SMB/CIFS packet and sending it to a vulnerable Samba server. The overflow condition will be triggered and will cause smbd to overwrite sensitive areas of memory with attacker-supplied values.

Note that the smbd service runs with root privileges.







 

Privacy Statement
Copyright 2009, SecurityFocus