SMB: Create Negative End Of File

This signature detects attempts to exploit a known vulnerability against the Microsoft Server Message Block (SMB) client. A successful attack can lead to arbitrary code execution.

Extended Description

Microsoft Windows is prone to a remote code-execution vulnerability. The issue affects the Microsoft Server Message Block (SMB) client. An attacker can exploit this issue by sending a specially crafted SMB response to the affected application. Successfully exploiting this issue allows an attacker to execute arbitrary code in the context of the application, which may aid the attacker in taking complete control of an affected system.

Affected Products

Avaya messaging_application_server,Avaya meeting_exchange

References

BugTraq: 48184

CVE: CVE-2011-1268

Short Name
SMB:OF:CREATE-NEG-EOF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
SMB
Keywords
CVE-2011-1268 Create End File Negative Of bid:48184
Release Date
06/13/2011
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Microsoft

Avaya

CVSS Score

10.0

Found a potential security threat?