samba: Insufficient input validation in libsmbclient
Published Aug 22, 2018
8.8
HIGHCVSS 3.0
EPSS 4.30%
Description
A heap-buffer overflow was found in the way samba clients processed extra long filename in a directory listing. A malicious samba server could use this flaw to cause arbitrary code execution on a samba client. Samba versions before 4.6.16, 4.7.9 and 4.8.4 are vulnerable.
Affected products
-
- Version 4.6.16StatusaffectedConstraints-
- Version 4.7.9StatusaffectedConstraints-
- Version 4.8.4StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| The Samba Team | Samba | n/a |
|
Configuration 1
- 9.0
Configuration 2
- 14.04
- 16.04
- 18.04
Configuration 3
Configuration 4
- 4.0
- 4.0
- 7.0
- 7.0
- 7.0
No data.
Red Hat Enterprise Linux 7
samba-0:4.8.3-4.el7
Fixed · RHSA-2018:3056
Red Hat Gluster Storage 3.4 for RHEL 6
libtalloc-0:2.1.11-1.el6rhs
Fixed · RHSA-2018:2612
Red Hat Gluster Storage 3.4 for RHEL 6
libtdb-0:1.3.15-4.el6rhs
Fixed · RHSA-2018:2612
Red Hat Gluster Storage 3.4 for RHEL 6
libtevent-0:0.9.35-1.el6rhs
Fixed · RHSA-2018:2612
Red Hat Gluster Storage 3.4 for RHEL 6
samba-0:4.7.5-110.el6rhs
Fixed · RHSA-2018:2612
Red Hat Gluster Storage 3.4 for RHEL 7
libtalloc-0:2.1.11-1.el7rhgs
Fixed · RHSA-2018:2613
Red Hat Gluster Storage 3.4 for RHEL 7
libtdb-0:1.3.15-4.el7rhgs
Fixed · RHSA-2018:2613
Red Hat Gluster Storage 3.4 for RHEL 7
libtevent-0:0.9.35-1.el7rhgs
Fixed · RHSA-2018:2613
Red Hat Gluster Storage 3.4 for RHEL 7
samba-0:4.7.5-110.el7rhgs
Fixed · RHSA-2018:2613
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7
imgbased-0:1.0.29-1.el7ev
Fixed · RHSA-2018:3470
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7
redhat-release-virtualization-host-0:4.2-7.3.el7
Fixed · RHSA-2018:3470
Red Hat Virtualization 4 for Red Hat Enterprise Linux 7
redhat-virtualization-host-0:4.2-20181026.0.el7_6
Fixed · RHSA-2018:3470
Red Hat Enterprise Linux 5
samba
Not affected
Red Hat Enterprise Linux 5
samba3x
Not affected
Red Hat Enterprise Linux 6
samba
Not affected
Red Hat Enterprise Linux 8
samba
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 7 | samba-0:4.8.3-4.el7 | Fixed | RHSA-2018:3056 |
| Red Hat Gluster Storage 3.4 for RHEL 6 | libtalloc-0:2.1.11-1.el6rhs | Fixed | RHSA-2018:2612 |
| Red Hat Gluster Storage 3.4 for RHEL 6 | libtdb-0:1.3.15-4.el6rhs | Fixed | RHSA-2018:2612 |
| Red Hat Gluster Storage 3.4 for RHEL 6 | libtevent-0:0.9.35-1.el6rhs | Fixed | RHSA-2018:2612 |
| Red Hat Gluster Storage 3.4 for RHEL 6 | samba-0:4.7.5-110.el6rhs | Fixed | RHSA-2018:2612 |
| Red Hat Gluster Storage 3.4 for RHEL 7 | libtalloc-0:2.1.11-1.el7rhgs | Fixed | RHSA-2018:2613 |
| Red Hat Gluster Storage 3.4 for RHEL 7 | libtdb-0:1.3.15-4.el7rhgs | Fixed | RHSA-2018:2613 |
| Red Hat Gluster Storage 3.4 for RHEL 7 | libtevent-0:0.9.35-1.el7rhgs | Fixed | RHSA-2018:2613 |
| Red Hat Gluster Storage 3.4 for RHEL 7 | samba-0:4.7.5-110.el7rhgs | Fixed | RHSA-2018:2613 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | imgbased-0:1.0.29-1.el7ev | Fixed | RHSA-2018:3470 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | redhat-release-virtualization-host-0:4.2-7.3.el7 | Fixed | RHSA-2018:3470 |
| Red Hat Virtualization 4 for Red Hat Enterprise Linux 7 | redhat-virtualization-host-0:4.2-20181026.0.el7_6 | Fixed | RHSA-2018:3470 |
| Red Hat Enterprise Linux 5 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 5 | samba3x | Not affected | n/a |
| Red Hat Enterprise Linux 6 | samba | Not affected | n/a |
| Red Hat Enterprise Linux 8 | samba | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (17)
- http://www.securityfocus.com/bid/105085 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1042002 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHSA-2018:2612 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:2613 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3056 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3470 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2018-10858 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1612805 Issue Tracking
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-10858 x_refsource_CONFIRMIssue TrackingThird Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10284 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2018-10858
- https://security.gentoo.org/glsa/202003-52 vendor-advisoryx_refsource_GENTOO
- https://security.netapp.com/advisory/ntap-20180814-0001/ x_refsource_CONFIRMThird Party Advisory
- https://usn.ubuntu.com/3738-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2018-10858
- https://www.debian.org/security/2018/dsa-4271 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- https://www.samba.org/samba/security/CVE-2018-10858.html x_refsource_CONFIRMVendor Advisory
Change history (0)
No recorded changes yet.