vulnerability

Oracle Solaris 11: CVE-2017-12163: Vulnerability in Samba

Severity
5
CVSS
(AV:A/AC:L/Au:N/C:P/I:P/A:N)
Published
Nov 30, 2017
Added
Nov 30, 2017
Modified
Feb 1, 2022

Description

An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.

Solution(s)

oracle-solaris-11-3-upgrade-library-samba-libsmbclient-4-4-16-0-175-3-25-0-3-0oracle-solaris-11-3-upgrade-service-network-samba-4-4-16-0-175-3-25-0-3-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.