Логотип exploitDog
bind:CVE-2009-3103
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2009-3103

Количество 3

Количество 3

nvd логотип

CVE-2009-3103

больше 16 лет назад

Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7 RC allows remote attackers to execute arbitrary code or cause a denial of service (system crash) via an & (ampersand) character in a Process ID High header field in a NEGOTIATE PROTOCOL REQUEST packet, which triggers an attempted dereference of an out-of-bounds memory location, aka "SMBv2 Negotiation Vulnerability." NOTE: some of these details are obtained from third party information.

CVSS2: 10
EPSS: Критический
github логотип

GHSA-47wf-g7rm-46qq

почти 4 года назад

Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7 RC allows remote attackers to execute arbitrary code or cause a denial of service (system crash) via an & (ampersand) character in a Process ID High header field in a NEGOTIATE PROTOCOL REQUEST packet, which triggers an attempted dereference of an out-of-bounds memory location, aka "SMBv2 Negotiation Vulnerability." NOTE: some of these details are obtained from third party information.

EPSS: Критический
fstec логотип

BDU:2021-04407

больше 16 лет назад

Уязвимость компонента SMBv2 операционной системы Windows, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS2: 10
EPSS: Критический

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2009-3103

Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7 RC allows remote attackers to execute arbitrary code or cause a denial of service (system crash) via an & (ampersand) character in a Process ID High header field in a NEGOTIATE PROTOCOL REQUEST packet, which triggers an attempted dereference of an out-of-bounds memory location, aka "SMBv2 Negotiation Vulnerability." NOTE: some of these details are obtained from third party information.

CVSS2: 10
93%
Критический
больше 16 лет назад
github логотип
GHSA-47wf-g7rm-46qq

Array index error in the SMBv2 protocol implementation in srv2.sys in Microsoft Windows Vista Gold, SP1, and SP2, Windows Server 2008 Gold and SP2, and Windows 7 RC allows remote attackers to execute arbitrary code or cause a denial of service (system crash) via an & (ampersand) character in a Process ID High header field in a NEGOTIATE PROTOCOL REQUEST packet, which triggers an attempted dereference of an out-of-bounds memory location, aka "SMBv2 Negotiation Vulnerability." NOTE: some of these details are obtained from third party information.

93%
Критический
почти 4 года назад
fstec логотип
BDU:2021-04407

Уязвимость компонента SMBv2 операционной системы Windows, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

CVSS2: 10
93%
Критический
больше 16 лет назад

Уязвимостей на страницу