CVE Database
/

CVE-2004-0883

Back to search

CVE-2004-0883

Published: Dec 1, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requested to the smb_proc_read function, (2) returning a data offset from outside the samba packet to the smb_proc_readX function, (3) sending a certain TRANS2 fragmented packet to the smb_receive_trans2 function, (4) sending a samba packet with a certain header size to the smb_proc_readX_data function, or (5) sending a certain packet based offset for the data in a packet to the smb_receive_trans2 function.

VendorProductVersions

n/a

n/a

affected
n/a

References

20163
third-party-advisory
x_refsource_SECUNIA
11695
vdb-entry
x_refsource_BID
DSA-1082
vendor-advisory
x_refsource_DEBIAN
MDKSA-2005:022
vendor-advisory
x_refsource_MANDRAKE
FLSA:2336
vendor-advisory
x_refsource_FEDORA
oval:org.mitre.oval:def:10330
vdb-entry
signature
x_refsource_OVAL
linux-smbreceivetrans2-dos(18136)
vdb-entry
x_refsource_XF
DSA-1070
vendor-advisory
x_refsource_DEBIAN
RHSA-2004:537
vendor-advisory
x_refsource_REDHAT
20162
third-party-advisory
x_refsource_SECUNIA
VU#726198
third-party-advisory
x_refsource_CERT-VN
DSA-1067
vendor-advisory
x_refsource_DEBIAN
DSA-1069
vendor-advisory
x_refsource_DEBIAN
linux-smbprocreadxdata-dos(18135)
vdb-entry
x_refsource_XF
RHSA-2004:505
vendor-advisory
x_refsource_REDHAT
linux-smb-response-dos(18134)
vdb-entry
x_refsource_XF
20202
third-party-advisory
x_refsource_SECUNIA
RHSA-2004:504
vendor-advisory
x_refsource_REDHAT
13232
third-party-advisory
x_refsource_SECUNIA
20338
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now