imPC@ndo IT

Tracker / CVE-2004-0949

CVE-2004-0949

Medium 6.4

The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.

Affected products and versions

linux linux_kernel
redhat enterprise_linux
redhat enterprise_linux_desktop
redhat fedora_core
redhat linux_advanced_workstation
suse suse_linux
trustix secure_linux
ubuntu ubuntu_linux

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References