CVE-2008-1105
samba - arbitrary code execution
EPSS 69.1%
描述
Heap-based buffer overflow in the receive_smb_raw function in util/sock.c in Samba 3.0.0 through 3.0.29 allows remote attackers to execute arbitrary code via a crafted SMB response.
如何修補 CVE-2008-1105
要修補 CVE-2008-1105,請將受影響套件升級到下列已修補版本。
- Debian/samba—升級至 1:3.0.30-1 或更新版本
- Debian/samba—升級至 3.0.24-6etch10 或更新版本
CVE-2008-1105 正在被利用嗎?
可能 — EPSS 為 69.1%,屬於高被利用機率區間,建議優先修補。
受影響套件(2)
- from 0, < 1:3.0.30-1
- from 0, < 3.0.24-6etch10