CVE-2012-1182

CVE-2012-1182

Published · Updated

60Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 74%
from disclosure to weapon183 days
Published on NVDApr 10
1st PoC+183d
metasploitApr 10
exploitation probability
74%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
What the vendors declare (VEX)

Official vendor statements in CSAF/VEX format: whether their product is affected, already fixed, or ruled out — and why. These are the vendor's assertions, not Vexday's judgment.

Fixed
19 products (783 components)
Red Hat Enterprise Linux Server (v. 6) · Red Hat Enterprise Linux (v. 5 server) · Red Hat Enterprise Linux EUS (v. 5.6 server) · Red Hat Enterprise Linux Server Optional (v. 6) · Red Hat Enterprise Linux Workstation (v. 6) · and others 14
The RPC code generator in Samba 3.x before 3.4.16, 3.5.x before 3.5.14, and 3.6.x before 3.6.4 does not implement validation of an array length in a manner consistent with validation of array memory allocation, which allows remote attackers to execute arbitrary code via a crafted RPC call.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.