The chain_reply function in process.c in smbd in Samba before 3.4.8 and 3.5.x before 3.5.2 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) via a Negotiate Protocol request with a certain 0x0003 field value followed by a Session Setup AndX request with a certain 0x8003 field value.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2010-06-17 09:30
Updated : 2023-02-12 20:18
NVD link : CVE-2010-1635
Mitre link : CVE-2010-1635
JSON object : View
CWE
Products Affected
samba
- samba