Samba 3.x < 3.3.13 SMB1 Packet Chaining Memory Corruption
Critical Nessus Network Monitor Plugin ID 5572
SynopsisThe remote service is affected by a memory corruption vulnerability.
DescriptionVersions of Samba 3.x earlier than 3.3.13 are potentially affected by a memory corruption vulnerability when handling specially crafted SMB1 packets. A remote unauthenticated attacker, exploiting this flaw, could crash the affected service or potentially execute arbitrary code subject to the privileges of the user running the affected application.
SolutionUpgrade to Samba 3.3.13 or later.