CVE-2008-4314
Last modified
CVE-2008-4314 is a vulnerability of currently unknown severity. smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to be performed.. EPSS estimates a 4.33% chance of exploitation in the next 30 days.
Description
smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to be performed.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | 3.0.29 |
| Samba | Samba | 3.0.30 |
| Samba | Samba | 3.0.31 |
| Samba | Samba | 3.0.32 |
| Samba | Samba | 3.0.33 |
| Samba | Samba | 3.2.0 |
| Samba | Samba | 3.2.1 |
| Samba | Samba | 3.2.2 |
| Samba | Samba | 3.2.3 |
| Samba | Samba | 3.2.4 |
References
- http://secunia.com/advisories/32813Vendor Advisory
- http://secunia.com/advisories/32919Vendor Advisory
- http://secunia.com/advisories/32813Vendor Advisory
- http://secunia.com/advisories/32919Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-4314?
How severe is CVE-2008-4314?
How do I fix CVE-2008-4314?
Are you affected by CVE-2008-4314?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
