SMB: Samba Printer Server Spoolss Denial Of Service

This signature detects attempts to exploit a known vulnerability against Samba Printer Server Spoolss. A successful attack can result in a denial-of-service condition.

Extended Description

All versions of Samba from 4.0.0 onwards are vulnerable to a denial of service attack when the RPC spoolss service is configured to be run as an external daemon. Missing input sanitization checks on some of the input parameters to spoolss RPC calls could cause the print spooler service to crash.

Affected Products

Samba samba

Short Name
SMB:SAMBA:PRINTER-SPOOLSS-DOS
Severity
Minor
Recommended
True
Recommended Action
Drop
Category
SMB
Keywords
CVE-2018-1050 Denial Of Printer Samba Server Service Spoolss bid:103387
Release Date
05/15/2018
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Samba

Debian

Redhat

Canonical

CVSS Score

3.3

Found a potential security threat?