ALT-PU-2021-1567-1
Closed vulnerabilities
Published: 2002-12-31
Modified: 2025-04-03
Modified: 2025-04-03
CVE-2002-2196
Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to execute arbitrary code via a buffer overflow attack.
Severity: HIGH (7.5)
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P
References:
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:05.asc
- http://lists.samba.org/archive/samba-technical/2002-June/022075.html
- http://rhn.redhat.com/errata/RHBA-2002-209.html
- http://www.iss.net/security_center/static/10010.php
- http://www.securityfocus.com/bid/5587
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:05.asc
- http://lists.samba.org/archive/samba-technical/2002-June/022075.html
- http://rhn.redhat.com/errata/RHBA-2002-209.html
- http://www.iss.net/security_center/static/10010.php
- http://www.securityfocus.com/bid/5587
Published: 2004-07-27
Modified: 2025-04-03
Modified: 2025-04-03
CVE-2004-0686
Buffer overflow in Samba 2.2.x to 2.2.9, and 3.0.0 to 3.0.4, when the "mangling method = hash" option is enabled in smb.conf, has unknown impact and attack vectors.
Severity: MEDIUM (5.0)
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N
References:
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000851
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000854
- http://marc.info/?l=bugtraq&m=109051340810458&w=2
- http://marc.info/?l=bugtraq&m=109051533021376&w=2
- http://marc.info/?l=bugtraq&m=109052891507263&w=2
- http://marc.info/?l=bugtraq&m=109094272328981&w=2
- http://marc.info/?l=bugtraq&m=109785827607823&w=2
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101584-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-57664-1
- http://www.gentoo.org/security/en/glsa/glsa-200407-21.xml
- http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:071
- http://www.novell.com/linux/security/advisories/2004_22_samba.html
- http://www.redhat.com/support/errata/RHSA-2004-259.html
- http://www.trustix.org/errata/2004/0039/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16786
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10461
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000851
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000854
- http://marc.info/?l=bugtraq&m=109051340810458&w=2
- http://marc.info/?l=bugtraq&m=109051533021376&w=2
- http://marc.info/?l=bugtraq&m=109052891507263&w=2
- http://marc.info/?l=bugtraq&m=109094272328981&w=2
- http://marc.info/?l=bugtraq&m=109785827607823&w=2
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101584-1
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-57664-1
- http://www.gentoo.org/security/en/glsa/glsa-200407-21.xml
- http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:071
- http://www.novell.com/linux/security/advisories/2004_22_samba.html
- http://www.redhat.com/support/errata/RHSA-2004-259.html
- http://www.trustix.org/errata/2004/0039/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16786
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10461
Published: 2004-12-31
Modified: 2025-04-03
Modified: 2025-04-03
CVE-2004-0829
smbd in Samba before 2.2.11 allows remote attackers to cause a denial of service (daemon crash) by sending a FindNextPrintChangeNotify request without a previous FindFirstPrintChangeNotify, as demonstrated by the SMB client in Windows XP SP2.
Severity: MEDIUM (5.0)
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P
References:
- http://samba.org/samba/history/samba-2.2.11.html
- http://seclists.org/lists/bugtraq/2004/Sep/0003.html
- http://www.gentoo.org/security/en/glsa/glsa-200409-14.xml
- http://www.trustix.org/errata/2004/0043
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17138
- http://samba.org/samba/history/samba-2.2.11.html
- http://seclists.org/lists/bugtraq/2004/Sep/0003.html
- http://www.gentoo.org/security/en/glsa/glsa-200409-14.xml
- http://www.trustix.org/errata/2004/0043
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17138
Published: 2004-12-31
Modified: 2025-04-03
Modified: 2025-04-03
CVE-2004-2546
Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
Severity: MEDIUM (6.4)
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P
References:
- http://www.samba.org/samba/history/samba-3.0.6.html
- http://www.trustix.org/errata/2004/0043
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17139
- http://www.samba.org/samba/history/samba-3.0.6.html
- http://www.trustix.org/errata/2004/0043
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17139