Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2008-4114

CWE-3994 documents4 sources
Severity
7.1HIGH
EPSS
73.7%
top 1.19%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedSep 16
Latest updateMay 2

Description

srv.sys in the Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via an SMB WRITE_ANDX packet with an offset that is inconsistent with the packet size, related to "insufficiently validating the buffer size," as demonstrated by a request to the \PIPE\lsarpc named pipe, aka "SMB Validation Denial of Service Vulnerabil

CVSS vector

AV:N/AC:M/C:N/I:N/A:CExploitability: 8.6 | Impact: 6.9

Affected Packages1 packages

NVDmicrosoft/windows_vistagold, sp1+1

🔴Vulnerability Details

2
GHSA
GHSA-55g3-v56r-3g2g: srv2022-05-02
CVEList
CVE-2008-4114: srv2008-09-16

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows - 'WRITE_ANDX' SMB Command Handling Kernel Denial of Service (Metasploit)2008-09-15
CVE-2008-4114 (HIGH CVSS 7.1) | srv.sys in the Server service in Mi | cvebase.io