CVE-2018-10858

HIGH8.8EPSS 5.9%

samba - security update

Published: 8/22/2018Modified: 12/3/2025
Also known as:ALPINE-CVE-2018-10858DEBIAN-CVE-2018-10858

Description

A heap-buffer overflow was found in the way samba clients processed extra long filename in a directory listing. A malicious samba server could use this flaw to cause arbitrary code execution on a samba client. Samba versions before 4.6.16, 4.7.9 and 4.8.4 are vulnerable.

Affected packages (4)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH8.8CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References (2)