Oval Definition:oval:org.mitre.oval:def:642
Revision Date:2010-09-20Version:18
Title:HP-Samba DACL Remote Integer Overflow Vulnerability (CIFS A.02)
Description:Integer overflow in the Samba daemon (smbd) in Samba 2.x and 3.0.x through 3.0.9 allows remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via a Samba request with a large number of security descriptors that triggers a heap-based buffer overflow.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2004-1154
Platform(s):HP-UX 11
Product(s):Samba
Definition Synopsis
  • An HPUX 11.11 or 11.23 is installed
  • 700 Series or 800 Series OS Release 11.11
  • 700 Series OS Release 11.11
  • 700-series HP
  • AND HP Release B.11.11
  • OR 800 Series OS Release 11.11
  • 800-series HP
  • AND HP Release B.11.11
  • OR 700 Series or 800 Series OS Release 11.23
  • 700 Series OS Release 11.23
  • 700-series HP
  • AND HP Release B.11.23
  • OR 800 Series OS Release 11.23
  • 800-series HP
  • AND HP Release B.11.23
  • AND Any of the CIFS components has a version equal to A.02.01
  • CIFS-Server.CIFS-RUN with version equal A.02.01 is installed
  • OR CIFS-Server.CIFS-UTIL with version equal A.02.01 is installed
  • OR CIFS-Server.CIFS-ADMIN with version equal A.02.01 is installed
  • OR CIFS-Server.CIFS-LIB with version equal A.02.01 is installed
  • BACK