5

CVE-2004-0930

Exploit

The ms_fnmatch function in Samba 3.0.4 and 3.0.7 and possibly other versions allows remote authenticated users to cause a denial of service (CPU consumption) via a SAMBA request that contains multiple * (wildcard) characters.

Data is provided by the National Vulnerability Database (NVD)
SambaSamba Version3.0.0
SambaSamba Version3.0.3
SambaSamba Version3.0.4
SambaSamba Version3.0.5
SambaSamba Version3.0.6
SambaSamba Version3.0.7
SgiSamba Version3.0 Editionirix
SgiSamba Version3.0.1 Editionirix
SgiSamba Version3.0.2 Editionirix
SgiSamba Version3.0.3 Editionirix
SgiSamba Version3.0.4 Editionirix
SgiSamba Version3.0.5 Editionirix
SgiSamba Version3.0.6 Editionirix
SgiSamba Version3.0.7 Editionirix
ConectivaLinux Version10.0
RedhatEnterprise Linux Version2.1 Editionadvanced_server
RedhatEnterprise Linux Version2.1 Editionadvanced_server_ia64
RedhatEnterprise Linux Version2.1 Editionenterprise_server
RedhatEnterprise Linux Version2.1 Editionenterprise_server_ia64
RedhatEnterprise Linux Version2.1 Editionworkstation
RedhatEnterprise Linux Version2.1 Editionworkstation_ia64
RedhatEnterprise Linux Version3.0 Editionadvanced_server
RedhatEnterprise Linux Version3.0 Editionenterprise_server
RedhatEnterprise Linux Version3.0 Editionworkstation_server
RedhatFedora Core Versioncore_2.0
RedhatFedora Core Versioncore_3.0
RedhatLinux Advanced Workstation Version2.1 Editionia64
RedhatLinux Advanced Workstation Version2.1 Editionitanium_processor
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.06% 0.898
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P