Nmap Development mailing list archives

Re: NSE: smb.start_session_extended failing against Win10


From: Paulino Calderon <paulino () calderonpale com>
Date: Tue, 16 May 2017 00:07:57 -0500

Thanks for the report. We have some pending issues that might be related to this. Today I’ve received enough PCAPS to 
troubleshoot this issue, I will start looking into this! Your information has been very useful.

Cheers.

Paulino Calderon Pale || @calderpwn on Twitter || http://www.calderonpale.com



On May 16, 2017, at 12:03 AM, Tinker Fairy <nmap () tinkerfairy net> wrote:

Folks,

With 7.4 SVN, Windows 10 server connections were failing with NT_STATUS_NOT_SUPPORTED.

By kludging sp_nego = true on line 1319 of nselib/smb.lua I am able to connect successfully to Win10 servers. I 
assume this also breaks connections to old servers, but I haven't tested.

This makes me think that the format of the negotiation response packet has changed, altering the location of the 
SPNEGO OID. I'm not enough of an SMB or NSE expert to fix it correctly, though. 

Hoping someone can take this lead and run with it...

Cheers,

Tinker Fairy
_______________________________________________
Sent through the dev mailing list
https://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/

_______________________________________________
Sent through the dev mailing list
https://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/

Current thread: