SMB: Microsoft Windows SMB Client SmbCeCompleteSrvCallConstructionPhase2 Use After Free

This signature detects attempts to exploit a known vulnerability against SMB Client component of Microsoft Windows. A successful attack can lead to arbitrary code execution.

References

CVE: CVE-2025-54101

Short Name
SMB:MS-WIN-CLIENT-UAF
Severity
Minor
Recommended
False
Recommended Action
None
Category
SMB
Keywords
After CVE-2025-54101 Client Free Microsoft SMB SmbCeCompleteSrvCallConstructionPhase2 Use Windows
Release Date
11/14/2025
Supported Platforms

srx-branch-19.3

vsrx3bsd-19.2

srx-19.4

vsrx3bsd-19.4

srx-branch-19.4

vsrx-19.4

vsrx-19.2

srx-19.3

Sigpack Version
3862
False Positive
Occasionally

Found a potential security threat?