CVE-2008-1105
UnknownEPSS 69.08%
Last modified
CVE-2008-1105 is a vulnerability of currently unknown severity. Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.. EPSS estimates a 69.08% chance of exploitation in the next 30 days.
Description
Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | >= 3.0.0, <= 3.0.29 |
| Canonical | Ubuntu Linux | 6.06 |
| Canonical | Ubuntu Linux | 7.04 |
| Canonical | Ubuntu Linux | 7.10 |
| Canonical | Ubuntu Linux | 8.04 |
| Debian | Debian Linux | 4.0 |
References
- http://lists.apple.com/archives/security-announce/2008//Jun/msg00002.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00000.htmlMailing List, Third Party Advisory
- http://lists.vmware.com/pipermail/security-announce/2008/000023.htmlMailing List, Third Party Advisory
- http://secunia.com/advisories/30228Third Party Advisory
- http://secunia.com/advisories/30385Third Party Advisory
- http://secunia.com/advisories/30396Third Party Advisory
- http://secunia.com/advisories/30442Third Party Advisory
- http://secunia.com/advisories/30449Third Party Advisory
- http://secunia.com/advisories/30478Third Party Advisory
- http://secunia.com/advisories/30489Third Party Advisory
- http://secunia.com/advisories/30543Third Party Advisory
- http://secunia.com/advisories/30736Third Party Advisory
- http://secunia.com/advisories/30802Third Party Advisory
- http://secunia.com/advisories/30835Third Party Advisory
- http://secunia.com/advisories/31246Third Party Advisory
- http://secunia.com/advisories/31911Third Party Advisory
- http://secunia.com/advisories/33696Third Party Advisory
- http://secunia.com/secunia_research/2008-20/advisory/Third Party Advisory, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200805-23.xmlThird Party Advisory
- http://securitytracker.com/id?1020123Third Party Advisory, VDB Entry
- http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.473951Mailing List, Third Party Advisory
- http://support.apple.com/kb/HT2163Third Party Advisory
- http://www.debian.org/security/2008/dsa-1590Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0288.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0289.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0290.htmlThird Party Advisory
- http://www.samba.org/samba/security/CVE-2008-1105.htmlVendor Advisory
- http://www.securityfocus.com/archive/1/492683/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/492737/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/492903/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/29404Patch, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/31255Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/usn-617-1Third Party Advisory
- http://www.ubuntu.com/usn/usn-617-2Third Party Advisory
- http://www.vupen.com/english/advisories/2008/1681Permissions Required
- http://www.vupen.com/english/advisories/2008/1908Permissions Required
- http://www.vupen.com/english/advisories/2008/1981/referencesPermissions Required
- http://www.vupen.com/english/advisories/2008/2222/referencesPermissions Required
- http://www.vupen.com/english/advisories/2008/2639Permissions Required
- https://www.exploit-db.com/exploits/5712Third Party Advisory, VDB Entry
- https://www.redhat.com/archives/fedora-package-announce/2008-May/msg01006.htmlThird Party Advisory
- https://www.redhat.com/archives/fedora-package-announce/2008-May/msg01030.htmlThird Party Advisory
- https://www.redhat.com/archives/fedora-package-announce/2008-May/msg01082.htmlThird Party Advisory
- http://lists.apple.com/archives/security-announce/2008//Jun/msg00002.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2008-06/msg00000.htmlMailing List, Third Party Advisory
- http://lists.vmware.com/pipermail/security-announce/2008/000023.htmlMailing List, Third Party Advisory
- http://secunia.com/advisories/30228Third Party Advisory
- http://secunia.com/advisories/30385Third Party Advisory
- http://secunia.com/advisories/30396Third Party Advisory
- http://secunia.com/advisories/30442Third Party Advisory
- http://secunia.com/advisories/30449Third Party Advisory
- http://secunia.com/advisories/30478Third Party Advisory
- http://secunia.com/advisories/30489Third Party Advisory
- http://secunia.com/advisories/30543Third Party Advisory
- http://secunia.com/advisories/30736Third Party Advisory
- http://secunia.com/advisories/30802Third Party Advisory
- http://secunia.com/advisories/30835Third Party Advisory
- http://secunia.com/advisories/31246Third Party Advisory
- http://secunia.com/advisories/31911Third Party Advisory
- http://secunia.com/advisories/33696Third Party Advisory
- http://secunia.com/secunia_research/2008-20/advisory/Third Party Advisory, Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200805-23.xmlThird Party Advisory
- http://securitytracker.com/id?1020123Third Party Advisory, VDB Entry
- http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.473951Mailing List, Third Party Advisory
- http://support.apple.com/kb/HT2163Third Party Advisory
- http://www.debian.org/security/2008/dsa-1590Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0288.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0289.htmlThird Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0290.htmlThird Party Advisory
- http://www.samba.org/samba/security/CVE-2008-1105.htmlVendor Advisory
- http://www.securityfocus.com/archive/1/492683/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/492737/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/492903/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/29404Patch, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/31255Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/usn-617-1Third Party Advisory
- http://www.ubuntu.com/usn/usn-617-2Third Party Advisory
- http://www.vupen.com/english/advisories/2008/1681Permissions Required
- http://www.vupen.com/english/advisories/2008/1908Permissions Required
- http://www.vupen.com/english/advisories/2008/1981/referencesPermissions Required
- http://www.vupen.com/english/advisories/2008/2222/referencesPermissions Required
- http://www.vupen.com/english/advisories/2008/2639Permissions Required
- https://www.exploit-db.com/exploits/5712Third Party Advisory, VDB Entry
- https://www.redhat.com/archives/fedora-package-announce/2008-May/msg01006.htmlThird Party Advisory
- https://www.redhat.com/archives/fedora-package-announce/2008-May/msg01030.htmlThird Party Advisory
- https://www.redhat.com/archives/fedora-package-announce/2008-May/msg01082.htmlThird Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-1105?
Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.
How severe is CVE-2008-1105?
Severity scoring for CVE-2008-1105 is pending analysis. The EPSS model estimates a 69.08% probability of exploitation in the next 30 days.
How do I fix CVE-2008-1105?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
Are you affected by CVE-2008-1105?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
