CVE-2004-0600

Current Description

Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an invalid base-64 character during HTTP basic authentication.

Basic Data

PublishedJuly 27, 2004
Last ModifiedOctober 11, 2017
Assignercve@mitre.org
Data TypeCVE
Data FormatMITRE
Data Version4.0
Problem TypeNVD-CWE-Other
CVE Data Version4.0

Base Metric V2

CVSS 2 - Version2.0
CVSS 2 - Vector StringAV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS 2 - Access VectorNETWORK
CVSS 2 - Access ComplexityLOW
CVSS 2 - AuthenticationNONE
CVSS 2 - Confidentiality ImpactCOMPLETE
CVSS 2 - Availability ImpactCOMPLETE
CVSS 2 - Base Score10.0
SeverityHIGH
Exploitability Score10.0
Impact Score10.0
Obtain All Privilegetrue
Obtain User Privilegefalse
Obtain Other Privilegefalse

Base Metric V3

No data provided.

Configurations

  • OR - Configuration 1
    Cpe VersionPartVendorProductVersionUpdateEditionLanguageSW EditionTarget SWTarget HWOtherVersion Start IncludingVersion End IncludingVersion Start ExcludingVersion End Excluding
    2.3ApplicationSambaSamba3.0.2*******
    2.3ApplicationSambaSamba3.0.2a*******
    2.3ApplicationSambaSamba3.0.3*******
    2.3ApplicationSambaSamba3.0.4*******
  • OR - Configuration 2
    Cpe VersionPartVendorProductVersionUpdateEditionLanguageSW EditionTarget SWTarget HWOtherVersion Start IncludingVersion End IncludingVersion Start ExcludingVersion End Excluding
    2.3OSTrustixSecure Linux1.5*******
    2.3OSTrustixSecure Linux2.0*******
    2.3OSTrustixSecure Linux2.1*******

Vulnerable Software List

VendorProductVersions
Samba Samba 3.0.2, 3.0.2a, 3.0.3, 3.0.4
Trustix Secure Linux 1.5, 2.0, 2.1

References

NameSourceURLTags
CLA-2004:851http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000851CONECTIVA
CLA-2004:854http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000854CONECTIVA
20040722 Security Release - Samba 3.0.5 and 2.2.10http://marc.info/?l=bugtraq&m=109051340810458&w=2BUGTRAQ
20040722 [OpenPKG-SA-2004.033] OpenPKG Security Advisory (samba)http://marc.info/?l=bugtraq&m=109051533021376&w=2BUGTRAQ
20040722 Samba 3.x swat preauthentication buffer overflowhttp://marc.info/?l=bugtraq&m=109052647928375&w=2BUGTRAQ
20040722 TSSA-2004-014 - sambahttp://marc.info/?l=bugtraq&m=109052891507263&w=2BUGTRAQ
20040722 SWAT PreAuthorization PoChttp://marc.info/?l=bugtraq&m=109053195818351&w=2BUGTRAQ
GLSA-200407-21http://www.gentoo.org/security/en/glsa/glsa-200407-21.xmlGENTOO
MDKSA-2004:071http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:071MANDRAKE
SUSE-SA:2004:022http://www.novell.com/linux/security/advisories/2004_22_samba.htmlSUSE
RHSA-2004:259http://www.redhat.com/support/errata/RHSA-2004-259.htmlREDHATPATCH Vendor Advisory
2004-0039http://www.trustix.org/errata/2004/0039/TRUSTIX
samba-swat-base64-bo(16785)https://exchange.xforce.ibmcloud.com/vulnerabilities/16785XF
oval:org.mitre.oval:def:11445https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11445OVAL