CVE-2004-0808: Medium severity Samba Samba vulnerability
The processlogonpacket function in the nmbd server for Samba 3.0.6 and earlier, when domain logons are enabled, allows remote attackers to cause a denial of service via a SAMUASCHANGE request with a length value that is larger than the number of structures that are provided.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0808?
CVE-2004-0808 has a severity rating that indicates it can cause a denial of service vulnerability.
How do I fix CVE-2004-0808?
To fix CVE-2004-0808, upgrade your Samba installation to version 3.0.7 or later.
What versions of Samba are affected by CVE-2004-0808?
CVE-2004-0808 affects Samba versions up to 3.0.6, including 3.0.0 through 3.0.6.
What type of attack does CVE-2004-0808 enable?
CVE-2004-0808 allows remote attackers to perform a denial of service attack through malicious SAM_UAS_CHANGE requests.
Is CVE-2004-0808 relevant for Samba running domain logons?
Yes, CVE-2004-0808 is specifically relevant when domain logons are enabled in the Samba configuration.