CVE-2017-12163
An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (7.59%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An information leak flaw was found in the way SMB1 protocol was implemented by Samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker.
- CVSS 3.0
- 7.1 HIGHCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
- EPSS
- 7.59% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- samba/samba · redhat/enterprise linux desktop · redhat/enterprise linux server · redhat/enterprise linux workstation · redhat/gluster storage · debian/debian linux
- Source
- secalert@redhat.com
References
- http://www.securityfocus.com/bid/100925Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039401Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2017:2789Third Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2790Third Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2791Third Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2858Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-12163Issue Tracking, Mitigation, Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbns03775en_usThird Party Advisory
- https://security.netapp.com/advisory/ntap-20170921-0001/Third Party Advisory
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03817en_usThird Party Advisory
- https://www.debian.org/security/2017/dsa-3983Third Party Advisory
- https://www.samba.org/samba/security/CVE-2017-12163.htmlPatch, Vendor Advisory
- https://www.synology.com/support/security/Synology_SA_17_57_SambaMitigation, Third Party Advisory
- http://www.securityfocus.com/bid/100925Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039401Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHSA-2017:2789Third Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2790Third Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2791Third Party Advisory
- https://access.redhat.com/errata/RHSA-2017:2858Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-12163Issue Tracking, Mitigation, Third Party Advisory
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbns03775en_usThird Party Advisory
- https://security.netapp.com/advisory/ntap-20170921-0001/Third Party Advisory
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbux03817en_usThird Party Advisory
- https://www.debian.org/security/2017/dsa-3983Third Party Advisory
- https://www.samba.org/samba/security/CVE-2017-12163.htmlPatch, Vendor Advisory
- https://www.synology.com/support/security/Synology_SA_17_57_SambaMitigation, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.