CVE-2012-0870
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
23/02/2012
Last modified:
11/04/2025
Description
Heap-based buffer overflow in process.c in smbd in Samba 3.0, as used in the file-sharing service on the BlackBerry PlayBook tablet before 2.0.0.7971 and other products, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a Batched (aka AndX) request that triggers infinite recursion.
Impact
Base Score 2.0
7.90
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:samba:samba:3.0.0:*:*:*:*:*:*:* | ||
cpe:2.3:h:rim:blackberry_playbook_tablet:-:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:*:*:*:*:*:*:*:* | 2.0 (including) | |
cpe:2.3:o:rim:blackberry_playbook_os:1.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.3:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.5:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.6:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.7:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.7.2942:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.7.3312:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.8.4985:*:*:*:*:*:*:* | ||
cpe:2.3:o:rim:blackberry_playbook_os:1.0.8.6067:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://btsc.webapps.blackberry.com/btsc/search.do?cmd=displayKC&docType=kc&externalId=KB29565
- http://lists.apple.com/archives/security-announce/2012/May/msg00001.html
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00008.html
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00009.html
- http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00008.html
- http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00014.html
- http://secunia.com/advisories/48116
- http://secunia.com/advisories/48186
- http://secunia.com/advisories/48844
- http://secunia.com/advisories/48879
- http://support.apple.com/kb/HT5281
- http://www.ubuntu.com/usn/USN-1374-1
- https://bugzilla.redhat.com/show_bug.cgi?id=795509
- https://exchange.xforce.ibmcloud.com/vulnerabilities/73361
- http://btsc.webapps.blackberry.com/btsc/search.do?cmd=displayKC&docType=kc&externalId=KB29565
- http://lists.apple.com/archives/security-announce/2012/May/msg00001.html
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00008.html
- http://lists.opensuse.org/opensuse-security-announce/2012-03/msg00009.html
- http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00008.html
- http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00014.html
- http://secunia.com/advisories/48116
- http://secunia.com/advisories/48186
- http://secunia.com/advisories/48844
- http://secunia.com/advisories/48879
- http://support.apple.com/kb/HT5281
- http://www.ubuntu.com/usn/USN-1374-1
- https://bugzilla.redhat.com/show_bug.cgi?id=795509
- https://exchange.xforce.ibmcloud.com/vulnerabilities/73361