Samba.Smbd.Session.Setup.AndX.SecurityBlob.Length.DoS

description-logoDescription

This indicates an attack attempt against a denial-of-service vulnerability in Samba.
The vulnerability is caused by an error when the vulnerable software handles an uninitialized variable in a Session Setup AndX request. It allows a remote attacker to cause a denial of service.

affected-products-logoAffected Products

Samba Samba 3.5.1
Samba Samba 3.5
Samba Samba 3.4.7
Samba Samba 3.4.6
Samba Samba 3.4.5
Samba Samba 3.4.2
Samba Samba 3.4.1

Impact logoImpact

Denial of service

recomended-action-logoRecommended Actions

Upgrade to the latest version of Samba (3.4.8 or 3.5.2 or later):
http://www.samba.org/

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)