SMB: Samba SMB1 message_push_string Information Disclosure

This signature detects attempts to exploit a known vulnerability against Samba SMB1. A successful attack can lead to sensitive information disclosure.

Extended Description

Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to clear allocated heap memory.

Affected Products

Samba samba

References

BugTraq: 101908

CVE: CVE-2017-15275

Short Name
SMB:SAMBA-SMB1-MPS-ID
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
SMB
Keywords
CVE-2017-15275 Disclosure Information SMB1 Samba bid:101908 message_push_string
Release Date
04/30/2020
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Samba

Debian

Redhat

Canonical

CVSS Score

5.0

Found a potential security threat?