CVE-2012-0870
EPSS 6.5%
描述
Heap-based buffer overflow in process.c in smbd in Samba 3.0, as used in the file-sharing service on the BlackBerry PlayBook tablet before 2.0.0.7971 and other products, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a Batched (aka AndX) request that triggers infinite recursion.
如何修補 CVE-2012-0870
要修補 CVE-2012-0870,請將受影響套件升級到下列已修補版本。
- Debian/samba—升級至 2:3.4.0~pre1-1 或更新版本
CVE-2012-0870 正在被利用嗎?
中等 — EPSS 為 6.5%,可持續追蹤但非最高優先。
受影響套件(1)
- from 0, < 2:3.4.0~pre1-1