PT-2008-6948 · Samba+1 · Samba+1

K`Sose

·

Published

1970-01-01

·

Updated

2024-06-15

·

CVE-2008-1105

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Samba versions 3.0.0 through 3.0.29 Samba versions prior to 3.0.28a-r1
Description The issue is a heap-based buffer overflow in the receive smb raw function in util/sock.c in Samba, which allows remote attackers to execute arbitrary code via a crafted SMB response. This can lead to a violation of confidentiality, integrity, and availability of protected information. The exploitation of this issue can be done remotely.
Recommendations For Samba versions 3.0.0 through 3.0.29, update to a version outside of this range to resolve the issue. For Samba versions prior to 3.0.28a-r1, update to version 3.0.28a-r1 or later to resolve the issue. As a temporary workaround, consider restricting access to the vulnerable receive smb raw function in util/sock.c until a patch is available.

Exploit

Fix

RCE

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04199
BDU:2015-04200
BDU:2015-04201
BDU:2015-04202
BDU:2015-04203
BDU:2015-04204
BDU:2015-04205
BDU:2015-04206
BDU:2015-04207
BDU:2015-04208
BDU:2015-04209
BDU:2015-04210
BDU:2015-04211
BDU:2015-04212
BDU:2015-04213
BDU:2015-04214
BDU:2015-04215
BDU:2015-04216
BDU:2015-04217
BDU:2015-04218
BDU:2015-07554
BDU:2015-07555
BDU:2015-07576
BDU:2015-07577
BDU:2015-07581
BDU:2015-07582
BDU:2015-07589
BDU:2015-07590
BDU:2015-08377
BDU:2015-08378
BDU:2015-08379
BDU:2015-08380
BDU:2015-08381
BDU:2015-08382
BDU:2015-08383
BDU:2015-08384
BDU:2015-09629
CVE-2008-1105
DSA-1590-1
HPSBUX02341
OPENSUSE-SU-2024:10683-1
OPENSUSE-SU-2024:11365-1
RHSA-2008:0288
RHSA-2008:0289
RHSA-2008:0290
RHSA-2008_0288
RHSA-2008_0290

Affected Products

Red Hat
Samba