CVE-2009-2526 EXPLOIT
7.8
HIGH · CVSS 2.0 · EPSS 81.9% (pctl 100)
Patch early
A public exploit exists.
Description
Microsoft Windows Vista Gold, SP1, and SP2 and Server 2008 Gold and SP2 do not properly validate fields in SMBv2 packets, which allows remote attackers to cause a denial of service (infinite loop and system hang) via a crafted packet to the Server service, aka "SMBv2 Infinite Loop Vulnerability."
Scoring
| CVSS | 7.8 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
| EPSS | 81.89% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-399 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2009-10-14 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| microsoft | windows server 2008 |
| microsoft | windows vista |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Windows - 'srv2.sys' SMB Code Execution (Python) (MS09-050) | 2016-02-26 |
| exploit-db | Microsoft Windows - 'srv2.sys' SMB Negotiate ProcessID Function Table Dereference (MS09-050) | 2010-08-17 |
References
- http://www.us-cert.gov/cas/techalerts/TA09-286A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-050
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5595
- http://www.us-cert.gov/cas/techalerts/TA09-286A.html
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-050
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5595
→ the Explorer · watch your stack · NVD