Red Hat Customer Portal

Skip to main content

CVE-2008-1105

Impact:
Critical
Public Date:
2008-05-28
Bugzilla:
446724: CVE-2008-1105 Samba client buffer overflow

The MITRE CVE dictionary describes this issue as:

Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.

Find out more about CVE-2008-1105 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 4 (samba) RHSA-2008:0288 2008-05-28
Red Hat Enterprise Linux 3 (samba) RHSA-2008:0288 2008-05-28
Red Hat Enterprise Linux Extended Update Support 4.5 (samba) RHSA-2008:0289 2008-05-28
Red Hat Enterprise Linux 5 (samba) RHSA-2008:0290 2008-05-28
Red Hat Enterprise Linux 2.1 (samba) RHSA-2008:0288 2008-05-28

Acknowledgements

Red Hat would like to thank Alin Rad Pop of Secunia Research for responsibly disclosing this issue.