cve/2017/CVE-2017-12163.md
2024-05-26 14:27:05 +02:00

18 lines
821 B
Markdown

### [CVE-2017-12163](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-12163)
![](https://img.shields.io/static/v1?label=Product&message=Samba&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%204.7%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-200&color=brighgreen)
### Description
An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/maxamillion/ansible-role-snort