CVE-2004-0949Kernel vulnerability

6 documents6 sources
Severity
6.4MEDIUMNVD
EPSS
3.7%
top 11.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 10
Latest updateApr 29

Description

The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.

CVSS vector

AV:N/AC:L/C:P/I:P/A:NExploitability: 10.0 | Impact: 4.9

Affected Packages6 packages

Also affects: Ubuntu Linux 4.1, Enterprise Linux 2.1, 3.0

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pj7f-5c59-qj9r: The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 22022-04-29
CVEList
CVE-2004-0949: The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 22004-12-01

📋Vendor Advisories

2
Ubuntu
Linux kernel vulnerabilities2004-11-19
Red Hat
security flaw2004-11-12

💬Community

1
Bugzilla
CVE-2004-0949 security flaw2018-08-16
CVE-2004-0949 — Linux Kernel vulnerability | cvebase