SMB: Samba Writeable Share Insecure Library Loading

This signature detects attempts to exploit a known vulnerability in Samba. A successful exploitation attempt could result in the execution of arbitrary code in the security context of root.

Extended Description

Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share, and then cause the server to load and execute it.

Affected Products

Debian debian_linux

Short Name
SMB:SAMBA:CVE-2017-7494-ILL
Severity
Major
Recommended
False
Recommended Action
None
Category
SMB
Keywords
CVE-2017-7494 Insecure Library Loading Samba Share Writeable
Release Date
06/01/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Rarely
Vendors

Samba

Debian

CVSS Score

10.0

Found a potential security threat?