5
CVSSv2

CVE-2004-0930

Published: 27/01/2005 Updated: 11/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The ms_fnmatch function in Samba 3.0.4 and 3.0.7 and possibly other versions allows remote authenticated users to cause a denial of service (CPU consumption) via a SAMBA request that contains multiple * (wildcard) characters.

Vulnerable Product Search on Vulmon Subscribe to Product

samba samba 3.0.7

sgi samba 3.0.1

sgi samba 3.0

conectiva linux 10.0

samba samba 3.0.5

samba samba 3.0.6

sgi samba 3.0.6

sgi samba 3.0.7

samba samba 3.0.0

sgi samba 3.0.2

sgi samba 3.0.3

samba samba 3.0.3

samba samba 3.0.4

sgi samba 3.0.4

sgi samba 3.0.5

redhat enterprise linux 2.1

redhat enterprise linux 3.0

redhat linux advanced workstation 2.1

redhat fedora core core_3.0

gentoo linux

redhat enterprise linux desktop 3.0

redhat fedora core core_2.0

Vendor Advisories

Synopsis samba security update Type/Severity Security Advisory: Important Topic Updated samba packages that fix various security vulnerabilities are nowavailable Description Samba provides file and printer sharing services to SMB/CIFS clientsDuring a code audit, Stefan Esser discovered a ...
Karol Wiesek discovered a Denial of Service vulnerability in samba A flaw in the input validation routines used to match filename strings containing wildcard characters may allow a remote user to consume more than normal amounts of CPU resources, thus impacting the performance and response of the server In some circumstances the server can becom ...