Back to search
CVE-2007-5904
Published: Nov 9, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long SMB responses that trigger the overflows in the SendReceive function.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20080208 rPSA-2008-0048-1 kernel
mailing-list
x_refsource_BUGTRAQ
SUSE-SA:2008:017
vendor-advisory
x_refsource_SUSE
26438
vdb-entry
x_refsource_BID
28643
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:9901
vdb-entry
signature
x_refsource_OVAL
USN-618-1
vendor-advisory
x_refsource_UBUNTU
28826
third-party-advisory
x_refsource_SECUNIA
SUSE-SA:2008:013
vendor-advisory
x_refsource_SUSE
29387
third-party-advisory
x_refsource_SECUNIA
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0048
x_refsource_CONFIRM
DSA-1428
vendor-advisory
x_refsource_DEBIAN
27912
third-party-advisory
x_refsource_SECUNIA
SUSE-SA:2007:063
vendor-advisory
x_refsource_SUSE
29245
third-party-advisory
x_refsource_SECUNIA
RHSA-2008:0167
vendor-advisory
x_refsource_REDHAT
SUSE-SA:2007:064
vendor-advisory
x_refsource_SUSE
[linux-kernel] 20071108 Buffer overflow in CIFS VFS.
mailing-list
x_refsource_MLIST
1019612
vdb-entry
x_refsource_SECTRACK
27666
third-party-advisory
x_refsource_SECUNIA
ADV-2007-3860
vdb-entry
x_refsource_VUPEN
30769
third-party-advisory
x_refsource_SECUNIA
RHSA-2008:0089
vendor-advisory
x_refsource_REDHAT
[linux-kernel] 20071109 Re: Fw: Buffer overflow in CIFS VFS.
mailing-list
x_refsource_MLIST
SUSE-SA:2008:030
vendor-advisory
x_refsource_SUSE
27888
third-party-advisory
x_refsource_SECUNIA
29570
third-party-advisory
x_refsource_SECUNIA
30818
third-party-advisory
x_refsource_SECUNIA
kernel-cifsvfs-sendreceive-bo(38450)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now