Security Portal

Intrusion Prevention Service

Signature Version: 4.1044


NETBIOS Microsoft Windows SMB Client Message Size Vulnerability (CVE-2010-0477)
Threat Level: High
Release Date: 2010/6/9
Category: Buffer Overflow
Signature ID: 1112378
Included In:
Affected OS: Windows
Description: A remote code execution vulnerability exists in Microsoft Windows SMB Client. The vulnerability is due to improper validation of certain SMB fields when parsing transaction responses.
Impact: Remote code execution
Recommendation: Update vendor's patch.
False Positive: None
False Negative: None
Additional Information (Links open in new window):
Reference(s): CVE-2010-0477; MS10-020; BID:39340

Search the Threat Database
Enter Rule ID or Name