// For flags

CVE-2012-0870

samba: Any Batched ("AndX") request processing infinite recursion and heap-based buffer overflow

Severity Score

7.9
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Heap-based buffer overflow in process.c in smbd in Samba 3.0, as used in the file-sharing service on the BlackBerry PlayBook tablet before 2.0.0.7971 and other products, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a Batched (aka AndX) request that triggers infinite recursion.

Un desbordamiento de buffer basado en memoria dinámica (heap) en process.c de smbd en Samba v3.0, tal como se utiliza en el servicio de intercambio de archivos en la tableta BlackBerry PlayBook anterior a v2.0.0.7971 y otros productos, permite a atacantes remotos causar una denegación de servicio (caída de demonio) o posiblemente ejecutar código arbitrario a través de una por lotes (también conocido yx) que desencadena la solicitud de repetición infinita

*Credits: N/A
CVSS Scores
Attack Vector
Adjacent
Attack Complexity
Medium
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
Attack Vector
Adjacent
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2012-01-19 CVE Reserved
  • 2012-02-23 CVE Published
  • 2024-08-06 CVE Updated
  • 2024-10-13 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Samba
Search vendor "Samba"
Samba
Search vendor "Samba" for product "Samba"
3.0.0
Search vendor "Samba" for product "Samba" and version "3.0.0"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Tablet
Search vendor "Rim" for product "Blackberry Playbook Tablet"
--
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
<= 2.0
Search vendor "Rim" for product "Blackberry Playbook Os" and version " <= 2.0"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.3
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.3"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.5
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.5"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.6
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.6"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.7
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.7"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.7.2942
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.7.2942"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.7.3312
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.7.3312"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.8.4985
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.8.4985"
-
Affected
Rim
Search vendor "Rim"
Blackberry Playbook Os
Search vendor "Rim" for product "Blackberry Playbook Os"
1.0.8.6067
Search vendor "Rim" for product "Blackberry Playbook Os" and version "1.0.8.6067"
-
Affected