CVE
- Id
- 9377
- CVE No.
- CVE-2004-0949
- Status
- Candidate
- Description
- The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.
- Phase
- Assigned (20041012)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
62519 | 9377 | CVE-2004-0949 | BUGTRAQ:20041117 Advisory 14/2004: Linux 2.x smbfs multiple remote vulnerabilities | View |
62520 | 9377 | CVE-2004-0949 | URL:http://marc.info/?l=bugtraq&m=110072140811965&w=2 | View |
62521 | 9377 | CVE-2004-0949 | MISC:http://security.e-matters.de/advisories/142004.html | View |
62522 | 9377 | CVE-2004-0949 | DEBIAN:DSA-1070 | View |
62523 | 9377 | CVE-2004-0949 | URL:http://www.debian.org/security/2006/dsa-1070 | View |
62524 | 9377 | CVE-2004-0949 | DEBIAN:DSA-1067 | View |
62525 | 9377 | CVE-2004-0949 | URL:http://www.debian.org/security/2006/dsa-1067 | View |
62526 | 9377 | CVE-2004-0949 | DEBIAN:DSA-1069 | View |
62527 | 9377 | CVE-2004-0949 | URL:http://www.debian.org/security/2006/dsa-1069 | View |
62528 | 9377 | CVE-2004-0949 | DEBIAN:DSA-1082 | View |
62529 | 9377 | CVE-2004-0949 | URL:http://www.debian.org/security/2006/dsa-1082 | View |
62530 | 9377 | CVE-2004-0949 | FEDORA:FLSA:2336 | View |
62531 | 9377 | CVE-2004-0949 | URL:https://bugzilla.fedora.us/show_bug.cgi?id=2336 | View |
62532 | 9377 | CVE-2004-0949 | MANDRAKE:MDKSA-2005:022 | View |
62533 | 9377 | CVE-2004-0949 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:022 | View |
62534 | 9377 | CVE-2004-0949 | REDHAT:RHSA-2004:537 | View |
62535 | 9377 | CVE-2004-0949 | URL:http://www.redhat.com/support/errata/RHSA-2004-537.html | View |
62536 | 9377 | CVE-2004-0949 | REDHAT:RHSA-2004:504 | View |
62537 | 9377 | CVE-2004-0949 | URL:http://www.redhat.com/support/errata/RHSA-2004-504.html | View |
62538 | 9377 | CVE-2004-0949 | REDHAT:RHSA-2004:505 | View |
62539 | 9377 | CVE-2004-0949 | URL:http://www.redhat.com/support/errata/RHSA-2004-505.html | View |
62540 | 9377 | CVE-2004-0949 | TRUSTIX:2004-0061 | View |
62541 | 9377 | CVE-2004-0949 | URL:http://www.trustix.org/errata/2004/0061/ | View |
62542 | 9377 | CVE-2004-0949 | UBUNTU:USN-30-1 | View |
62543 | 9377 | CVE-2004-0949 | URL:https://www.ubuntu.com/usn/usn-30-1/ | View |
62544 | 9377 | CVE-2004-0949 | OVAL:oval:org.mitre.oval:def:10360 | View |
62545 | 9377 | CVE-2004-0949 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10360 | View |
62546 | 9377 | CVE-2004-0949 | SECUNIA:20162 | View |
62547 | 9377 | CVE-2004-0949 | URL:http://secunia.com/advisories/20162 | View |
62548 | 9377 | CVE-2004-0949 | SECUNIA:20163 | View |
62549 | 9377 | CVE-2004-0949 | URL:http://secunia.com/advisories/20163 | View |
62550 | 9377 | CVE-2004-0949 | SECUNIA:20202 | View |
62551 | 9377 | CVE-2004-0949 | URL:http://secunia.com/advisories/20202 | View |
62552 | 9377 | CVE-2004-0949 | SECUNIA:20338 | View |
62553 | 9377 | CVE-2004-0949 | URL:http://secunia.com/advisories/20338 | View |
62554 | 9377 | CVE-2004-0949 | XF:linux-smbrecvtrans2-memory-leak(18137) | View |
62555 | 9377 | CVE-2004-0949 | URL:http://xforce.iss.net/xforce/xfdb/18137 | View |
62556 | 9377 | CVE-2004-0949 | BID:11695 | View |
62557 | 9377 | CVE-2004-0949 | URL:http://www.securityfocus.com/bid/11695 | View |
62558 | 9377 | CVE-2004-0949 | SECUNIA:13232 | View |