CVE-2004-0686: Buffer Overflow
Published Jul 23, 2004
·Updated
Buffer overflow in Samba 2.2.x to 2.2.9, and 3.0.0 to 3.0.4, when the "mangling method = hash" option is enabled in smb.conf, has unknown impact and attack vectors.
Affected Software
5 affected components
Samba Samba>=2.2.0<2.2.10
Samba Samba>=3.0.0<3.0.5
Trustix Secure Linux=2.0
Trustix Secure Linux=1.5
Trustix Secure Linux=2.1
Remediation
Patch Available
Event History
Jul 23, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0686?
The severity of CVE-2004-0686 is significant as it involves a buffer overflow that could lead to unknown impacts.
2
How do I fix CVE-2004-0686?
To mitigate CVE-2004-0686, disable the "mangling method = hash" option in smb.conf or upgrade to a patched version of Samba.
3
Which versions of Samba are affected by CVE-2004-0686?
CVE-2004-0686 affects Samba versions 2.2.x to 2.2.9 and 3.0.0 to 3.0.4.
4
Is Trustix Secure Linux affected by CVE-2004-0686?
Yes, Trustix Secure Linux versions 1.5, 2.0, and 2.1 are affected by CVE-2004-0686.
5
What are potential attack vectors for CVE-2004-0686?
The attack vectors for CVE-2004-0686 are currently unknown, but it is associated with the buffer overflow vulnerability.