CVE-2004-2546
published 2004-12-31CVE-2004-2546: Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
PriorityP415medium6.4CVSS 2.0
AVNACLAuNCPINAP
EPSS
2.91%
85.6th percentile
Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | samba | < samba 3.0.6-1 (bookworm) | samba 3.0.6-1 (bookworm) |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | >= 0 < 3.0.6-1 | 3.0.6-1 |
| samba | samba | >= 0 < 3.0.6-1 | 3.0.6-1 |
CVSS provenance
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:P
osv6.4MEDIUM
vendor_debian6.4MEDIUM
vendor_redhat6.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8v2x-hr7h-j8qx: Multiple memory leaks in Samba before 3
ghsa_unreviewed·2022-04-29
CVE-2004-2546 [MEDIUM] GHSA-8v2x-hr7h-j8qx: Multiple memory leaks in Samba before 3
Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
OSV
CVE-2004-2546: Multiple memory leaks in Samba before 3
osv·2004-12-31·CVSS 6.4
CVE-2004-2546 [MEDIUM] CVE-2004-2546: Multiple memory leaks in Samba before 3
Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
Debian
CVE-2004-2546: samba - Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of...
vendor_debian·2004·CVSS 6.4
CVE-2004-2546 [MEDIUM] CVE-2004-2546: samba - Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of...
Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
Scope: local
bookworm: resolved (fixed in 3.0.6-1)
bullseye: resolved (fixed in 3.0.6-1)
forky: resolved (fixed in 3.0.6-1)
sid: resolved (fixed in 3.0.6-1)
trixie: resolved (fixed in 3.0.6-1)
Red Hat
CVE-2004-2546: Multiple memory leaks in Samba before 3
vendor_redhat·CVSS 6.4
CVE-2004-2546 [MEDIUM] CVE-2004-2546: Multiple memory leaks in Samba before 3
Multiple memory leaks in Samba before 3.0.6 allow attackers to cause a denial of service (memory consumption).
Statement: Not vulnerable. This issue did not affect the versions of Samba as distributed with Red Hat Enterprise Linux 3, or 4. Red Hat Enterprise Linux 2.1 shipped with a version of Samba prior to 3.0.6, but we verified by code audit that it is not affected by this issue.
No detection rules found.
Exploit-DB
HP Web Jetadmin 7.5.2456 - Arbitrary Command Execution
exploitdb·2004-03-24
CVE-2004-1857 HP Web Jetadmin 7.5.2456 - Arbitrary Command Execution
HP Web Jetadmin 7.5.2456 - Arbitrary Command Execution
---
source: https://www.securityfocus.com/bid/9973/info
Reportedly HP web Jetadmin is prone to a remote arbitrary command execution vulnerability. This issue is due to a failure of the application to properly validate and sanitize user supplied input.
Successful exploitation of this issue will allow a malicious user to execute arbitrary commands on the affected system.
This issue has been tested with an authenticated account on HP Web Jetadmin version 7.5.2546 running on a Windows platform.
/plugins/hpjfpmui/script/wja_update_product.hts:
(Changed the value of obj to our DoS function)
The following proof of concept that will create a user account has been provided by H D Moore :
https://:8443/plugins/framework/script/tree.xm
Exploit-DB
HP Web Jetadmin 7.5.2456 - Printer Firmware Update Script Arbitrary File Upload
exploitdb·2004-03-24
CVE-2004-1856 HP Web Jetadmin 7.5.2456 - Printer Firmware Update Script Arbitrary File Upload
HP Web Jetadmin 7.5.2456 - Printer Firmware Update Script Arbitrary File Upload
---
source: https://www.securityfocus.com/bid/9971/info
HP Web Jetadmin is prone to an issue which may permit remote users to upload arbitrary files to the management server.
This issue exists in the printer firmware update script. Given the ability to place arbitrary files on the server to an attacker-specified location, it may be possible to execute arbitrary code, though this will require exploitation of other known vulnerabilities, such as BID 9972 "HP Web Jetadmin setinfo.hts Script Directory Traversal Vulnerability".
Authentication, if it has been enabled, would be required to exploit this issue.
This issue was reported in HP Web Jetadmin version 7.5.2546 on a Windows platform. Other versions may be
Exploit-DB
HP Web Jetadmin 7.5.2456 - setinfo.hts Script Directory Traversal
exploitdb·2004-03-24
CVE-2004-1857 HP Web Jetadmin 7.5.2456 - setinfo.hts Script Directory Traversal
HP Web Jetadmin 7.5.2456 - setinfo.hts Script Directory Traversal
---
source: https://www.securityfocus.com/bid/9972/info
It has been reported that HP Web JetAdmin may be prone to a directory traversal vulnerability allowing remote attackers to access information outside the server root directory. The problem exists due to insufficient sanitization of user-supplied data passed via the 'setinclude' parameter of 'setinfo.hts' script.
This vulnerability can be combined with HP Web Jetadmin Firmware Update Script Arbitrary File Upload Weakness (BID 9971) to upload malicious files to a vulnerable server in order to gain unauthorized access to a host.
This issue has been tested with an authenticated account on HP Web Jetadmin version 7.5.2546 running on a Windows platform.
https://www.exam
No writeups or analysis indexed.
2004-12-31
Published