CVE-2004-0883

6 documents6 sources
Severity
6.4MEDIUM
EPSS
15.4%
top 5.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 10
Latest updateApr 29

Description

Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 allow remote samba servers to cause a denial of service (crash) or gain sensitive information from kernel memory via a samba server (1) returning more data than requested to the smb_proc_read function, (2) returning a data offset from outside the samba packet to the smb_proc_readX function, (3) sending a certain TRANS2 fragmented packet to the smb_receive_trans2 function, (4) sending a samba packet with a certai

CVSS vector

AV:N/AC:L/C:P/I:N/A:PExploitability: 10.0 | Impact: 4.9

Affected Packages6 packages

Also affects: Ubuntu Linux 4.1, Enterprise Linux 2.1, 3.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8mv4-h4c9-8275: Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 22022-04-29
CVEList
CVE-2004-0883: Multiple vulnerabilities in the samba filesystem (smbfs) in Linux kernel 22004-12-01

📋Vendor Advisories

2
Ubuntu
Linux kernel vulnerabilities2004-11-19
Red Hat
security flaw2004-11-12

💬Community

1
Bugzilla
CVE-2004-0883 security flaw2018-08-16
CVE-2004-0883 (MEDIUM CVSS 6.4) | Multiple vulnerabilities in the sam | cvebase.io