mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
958 B
958 B
CVE-2009-2526
Description
Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 do not properly validate fields in SMBv2 packets, which allows remote attackers to cause a denial of service (infinite loop and system hang) via a crafted packet to the Server service, aka "SMBv2 Infinite Loop Vulnerability."
POC
Reference
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-050
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-050