LWN.net Logo

samba: remote DoS vulnerability

Package(s):samba CVE #(s):CAN-2004-0930 CAN-2004-0882
Created:November 8, 2004 Updated:December 1, 2004
Description: According to this Samba advisory a remote attacker could cause an smbd process to consume abnormal amounts of system resources due to an input validation error when matching filenames containing wildcard characters. Versions of Samba 3.0.x up to and including 3.0.7 are vulnerable.

There is also an advisory about possible buffer overruns in smbd.

Alerts:
Ubuntu USN-22-1 2004-11-10
Gentoo 200411-21 2004-11-11
Mandrake MDKSA-2004:131 2004-11-10
SuSE SUSE-SA:2004:040 2004-11-15
Trustix TSLSA-2004-0058 2004-11-15
Red Hat RHSA-2004:632-01 2004-11-16
Ubuntu USN-29-1 2004-11-18
Mandrake MDKSA-2004:136 2004-11-18
Conectiva CLA-2004:899 2004-11-25
Fedora FEDORA-2004-460 2004-11-29
Fedora FEDORA-2004-459 2004-11-29

(Log in to post comments)

Copyright © 2008, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds
Powered by Rackspace Managed Hosting.