6.4
CVSSv2

CVE-2004-0949

Published: 10/01/2005 Updated: 11/10/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The smb_recv_trans2 function call in the samba filesystem (smbfs) in Linux kernel 2.4 and 2.6 does not properly handle the re-assembly of fragmented packets correctly, which could allow remote samba servers to (1) read arbitrary kernel information or (2) raise a counter value to an arbitrary number by sending the first part of the fragmented packet multiple times.

Vulnerable Product Search on Vulmon Subscribe to Product

linux linux kernel 2.4.0

linux linux kernel 2.4.1

linux linux kernel 2.4.10

linux linux kernel 2.4.17

linux linux kernel 2.4.18

linux linux kernel 2.4.19

linux linux kernel 2.4.2

linux linux kernel 2.4.23

linux linux kernel 2.4.27

linux linux kernel 2.4.7

linux linux kernel 2.4.8

linux linux kernel 2.6.0

linux linux kernel 2.6.1

linux linux kernel 2.6.2

linux linux kernel 2.6.7

linux linux kernel 2.6.8

redhat enterprise linux 2.1

redhat fedora core core_2.0

redhat fedora core core_3.0

suse suse linux 9.0

trustix secure linux 2.2

ubuntu ubuntu linux 4.1

linux linux kernel 2.4.13

linux linux kernel 2.4.14

linux linux kernel 2.4.21

linux linux kernel 2.4.24_ow1

linux linux kernel 2.4.25

linux linux kernel 2.4.3

linux linux kernel 2.4.4

linux linux kernel 2.6.5

linux linux kernel 2.6.6

linux linux kernel 2.6.9

redhat enterprise linux 3.0

suse suse linux 1.0

suse suse linux 8.1

suse suse linux 9.2

trustix secure linux 1.5

linux linux kernel 2.4.11

linux linux kernel 2.4.12

linux linux kernel 2.4.20

linux linux kernel 2.4.23_ow2

linux linux kernel 2.4.24

linux linux kernel 2.4.9

linux linux kernel 2.6.3

linux linux kernel 2.6.4

redhat linux advanced workstation 2.1

suse suse linux 9.1

linux linux kernel 2.4.15

linux linux kernel 2.4.16

linux linux kernel 2.4.22

linux linux kernel 2.4.26

linux linux kernel 2.4.5

linux linux kernel 2.4.6

linux linux kernel 2.6_test9_cvs

redhat enterprise linux desktop 3.0

suse suse linux 8.2

suse suse linux 8

trustix secure linux 2.0

trustix secure linux 2.1

Vendor Advisories

Synopsis kernel security update Type/Severity Security Advisory: Important Topic Updated kernel packages that fix several security issues in Red HatEnterprise Linux 3 are now available Description The Linux kernel handles the basic functions of the operating systemThis update includes fix ...
Synopsis Updated kernel packages fix security vulnerability Type/Severity Security Advisory: Important Topic Updated kernel packages are now available as part of ongoingsupport and maintenance of Red Hat Enterprise Linux version21 This is the sixth regular update Description The Linux ke ...
Synopsis Updated Itanium kernel packages resolve security issues Type/Severity Security Advisory: Important Topic Updated Itanium kernel packages are now available as part of ongoingsupport and maintenance of Red Hat Enterprise Linux version 21 This isthe sixth regular update Description ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-0427 A local denial of service vulnerability in do_fork() has been found CVE-2005-0489 A ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-0427 A local denial of service vulnerability in do_fork() has been found CVE-2005-0489 A ...
Several local and remote vulnerabilities have been discovered in the Linux kernel that may lead to a denial of service or the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2004-0427 A local denial of service vulnerability in do_fork() has been found CVE-2005-0489 A ...