CVE-2010-1642
The reply_sesssetup_and_X_spnego function in sesssetup.c in smbd in Samba before 3.4.8 and 3.5.x before 3.5.2 allows remote attackers to trigger an out-of-bounds read, and cause a denial of service (process crash), via a \xff\xff security blob length in a Session Setup AndX request.
- Samba
- ≤ 3.4.7, 3.0.0, 3.0.1, 3.0.2, 3.0.2a, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, 3.0.12, 3.0.13, 3.0.14, 3.0.14a, 3.0.15, 3.0.16, 3.0.17, 3.0.18, 3.0.19, 3.0.20, 3.0.20a, 3.0.20b, 3.0.21, 3.0.21a, 3.0.21b, 3.0.21c, 3.0.22, 3.0.23, 3.0.23a, 3.0.23b, 3.0.23c, 3.0.23d, 3.0.24, 3.0.25, 3.0.25a, 3.0.25b
- Fix
- Available
- CVSS 2.0
- 5.0 MEDIUM
- EPSS
- 3.6% (88th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2010-06-17
CVE-2010-1642 at NVD
No indexed exploits for CVE-2010-1642 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2010-1642 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.