PT-2004-1772 · Samba+1 · Samba+1

Published

2004-07-23

·

Updated

2022-08-29

·

CVE-2004-0686

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Samba versions 2.2.x through 2.2.9 Samba versions 3.0.0 through 3.0.4
Description A buffer overflow issue exists when the mangling method = hash option is enabled in smb.conf. The impact and attack vectors of this issue are not specified. The remote Samba server may be vulnerable to this buffer overflow if the 'mangling method' is set to 'hash' in smb.conf.
Recommendations For Samba versions 2.2.x through 2.2.9, consider disabling the mangling method = hash option in smb.conf as a temporary workaround. For Samba versions 3.0.0 through 3.0.4, consider disabling the mangling method = hash option in smb.conf as a temporary workaround. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

ALT-PU-2021-1567
CVE-2004-0686
RHSA-2004:259

Affected Products

Alt Linux
Samba