CVE-1999-0811: Buffer Overflow
Buffer overflow in Samba smbd program via a malformed message command.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Remove
Remove
Sambafrom your environment.If the Samba service is not required, uninstall Samba from affected systems or remove the smbd daemon until a patch is available.
- Configuration
Stop and disable the smbd service on affected hosts until an official fix is available.
Samba (smbd) service_enabled = false - Compensating control
Restrict network access to systems running Samba/smbd to trusted IP ranges or networks (for example via firewall rules or network segmentation) and isolate affected hosts from untrusted networks until a fix is applied.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0811?
CVE-1999-0811 is classified as a critical vulnerability due to its potential for remote code execution through buffer overflow.
How do I fix CVE-1999-0811?
To fix CVE-1999-0811, upgrade Samba to version 2.0.5 or later where the vulnerability is addressed.
Which versions of Samba are affected by CVE-1999-0811?
CVE-1999-0811 affects Samba version 2.0.4 specifically.
What type of vulnerability is CVE-1999-0811?
CVE-1999-0811 is a buffer overflow vulnerability that occurs when the Samba smbd program receives a malformed message command.
Can CVE-1999-0811 be exploited remotely?
Yes, CVE-1999-0811 can be exploited remotely, allowing attackers to execute arbitrary code on the affected system.