Lucene search

K
cve[email protected]CVE-2006-5276
HistoryFeb 20, 2007 - 1:28 a.m.

CVE-2006-5276

2007-02-2001:28:00
web.nvd.nist.gov
23
cve-2006-5276
buffer overflow
dce/rpc
snort
sourcefire intrusion sensor
smb traffic
nvd

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

Low

0.71 High

EPSS

Percentile

98.1%

Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic.

Affected configurations

NVD
Node
snortsnortRange2.6.1.2
OR
snortsnortMatch2.6.1
OR
snortsnortMatch2.6.1.1
OR
snortsnortMatch2.7_beta1
OR
sourcefireintrusion_sensorMatch4.1
OR
sourcefireintrusion_sensorMatch4.1crossbeam
OR
sourcefireintrusion_sensorMatch4.5
OR
sourcefireintrusion_sensorMatch4.5crossbeam
OR
sourcefireintrusion_sensorMatch4.6
OR
sourcefireintrusion_sensorMatch4.6crossbeam

References

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

Low

0.71 High

EPSS

Percentile

98.1%