Jump to content

Samba smbd vulnerability


Rocko

Recommended Posts

I'm currently trying to gain access to a practice server, according to Nessus it has 1x Critical vuln and 2x Medium vulns, they are:

Critical: CVE-2004-1154 Samba smbd Security Descriptor Parsing Remote Overflow.

Medium: CVE-2016-2118 Samba Badlock Vulnerability.

Medium: SMB Signing Disabled.

I've searched Google,  ExploitDB and msf for exploits for the Critical vuln but I keep coming up blank. Nessus explains that crafting packets with hundreds of thousands of ACLs would cause a remote buffer overrun, but how do I take advantage of that? Or, am I focussing too much on the critical vuln when I could take advantage of the medium vulns easier?

Help and pointers appreciated!

 

Mike

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...