CVE-2008-4314: Infoleak
smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to be performed.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-4314?
CVE-2008-4314 is classified as a medium severity vulnerability that can lead to memory disclosure and denial of service.
How do I fix CVE-2008-4314?
To fix CVE-2008-4314, upgrade Samba to the latest version addressing this vulnerability, specifically versions after 3.2.4.
What are the affected versions in CVE-2008-4314?
CVE-2008-4314 affects Samba versions 3.0.29 through 3.2.4.
What impact does CVE-2008-4314 have on systems?
CVE-2008-4314 allows remote attackers to read arbitrary memory and potentially crash the Samba service, leading to denial of service.
Is CVE-2008-4314 exploitable remotely?
Yes, CVE-2008-4314 can be exploited remotely by attackers sending crafted Samba requests.