CVE-2004-1154

Publication date 10 January 2005

Last updated 24 July 2024


Ubuntu priority

Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security descriptors that triggers a heap-based buffer overflow.

Status

Package Ubuntu Release Status
samba 7.04 feisty
Not affected
6.10 edgy
Not affected
6.06 LTS dapper
Not affected

References

Related Ubuntu Security Notices (USN)

    • USN-41-1
    • Samba vulnerability
    • 18 December 2004

Other references