Lucene search

K
freebsdFreeBSD3B3676BE-52E1-11D9-A9E7-0001020EED82
HistoryDec 02, 2004 - 12:00 a.m.

samba -- integer overflow vulnerability

2004-12-0200:00:00
vuxml.freebsd.org
27

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.111

Percentile

95.2%

Greg MacManus, iDEFENSE Labs reports:

Remote exploitation of an integer overflow vulnerability
in the smbd daemon included in Samba 2.0.x, Samba 2.2.x,
and Samba 3.0.x prior to and including 3.0.9 could allow
an attacker to cause controllable heap corruption, leading
to execution of arbitrary commands with root
privileges.
Successful remote exploitation allows an attacker to gain
root privileges on a vulnerable system. In order to
exploit this vulnerability an attacker must possess
credentials that allow access to a share on the Samba
server. Unsuccessful exploitation attempts will cause the
process serving the request to crash with signal 11, and
may leave evidence of an attack in logs.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchsamba< 3.0.10UNKNOWN
FreeBSDanynoarchja-samba< 2.2.12.j1.0beta1_2UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.111

Percentile

95.2%