Family: SuSE Local Security Checks --> Category: infos
SUSE-SA:2004:040: samba Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the samba package
Detailed Explanation for this Vulnerability Test
The remote host is missing the patch for the advisory SUSE-SA:2004:040 (samba).
There is a problem in the Samba file sharing service daemon, which
allows a remote user to have the service consume lots of computing
power and potentially crash the service by querying special wildcarded
This attack can be successful if the Samba daemon is running and a
remote user has access to a share (even read only).
The Samba team has issued the new Samba version 3.0.8 to fix this
problem, this update backports the relevant patch.
This issue has been assigned the Mitre CVE ID CVE-2004-0930.
Stefan Esser found a problem in the Unicode string handling in the
Samba file handling which could lead to a remote heap buffer
overflow and might allow remote attackers to inject code in the smbd
This issue has been assigned the Mitre CVE ID CVE-2004-0882.
We provide updated packages for both these problems.
The Samba version 2 packages are not affected by this problem.
Solution : http://www.suse.de/security/2004_40_samba.html
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.