CVSS2
Attack Vector
ADJACENT_NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:A/AC:M/Au:N/C:C/I:C/A:C
AI Score
Confidence
High
EPSS
Percentile
99.5%
Heap-based buffer overflow in process.c in smbd in Samba 3.0, as used in the file-sharing service on the BlackBerry PlayBook tablet before 2.0.0.7971 and other products, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a Batched (aka AndX) request that triggers infinite recursion.
Vendor | Product | Version | CPE |
---|---|---|---|
samba | samba | 3.0.0 | cpe:2.3:a:samba:samba:3.0.0:*:*:*:*:*:*:* |
rim | blackberry_playbook_tablet | - | cpe:2.3:h:rim:blackberry_playbook_tablet:-:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | * | cpe:2.3:o:rim:blackberry_playbook_os:*:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0 | cpe:2.3:o:rim:blackberry_playbook_os:1.0:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0.3 | cpe:2.3:o:rim:blackberry_playbook_os:1.0.3:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0.5 | cpe:2.3:o:rim:blackberry_playbook_os:1.0.5:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0.6 | cpe:2.3:o:rim:blackberry_playbook_os:1.0.6:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0.7 | cpe:2.3:o:rim:blackberry_playbook_os:1.0.7:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0.7.2942 | cpe:2.3:o:rim:blackberry_playbook_os:1.0.7.2942:*:*:*:*:*:*:* |
rim | blackberry_playbook_os | 1.0.7.3312 | cpe:2.3:o:rim:blackberry_playbook_os:1.0.7.3312:*:*:*:*:*:*:* |
btsc.webapps.blackberry.com/btsc/search.do?cmd=displayKC&docType=kc&externalId=KB29565
lists.apple.com/archives/security-announce/2012/May/msg00001.html
lists.opensuse.org/opensuse-security-announce/2012-03/msg00008.html
lists.opensuse.org/opensuse-security-announce/2012-03/msg00009.html
lists.opensuse.org/opensuse-security-announce/2012-04/msg00008.html
lists.opensuse.org/opensuse-security-announce/2012-04/msg00014.html
secunia.com/advisories/48116
secunia.com/advisories/48186
secunia.com/advisories/48844
secunia.com/advisories/48879
support.apple.com/kb/HT5281
www.ubuntu.com/usn/USN-1374-1
bugzilla.redhat.com/show_bug.cgi?id=795509
exchange.xforce.ibmcloud.com/vulnerabilities/73361