CVE-2004-0808
EPSS 7.9%
Description
The process_logon_packet function in the nmbd server for Samba 3.0.6 and earlier, when domain logons are enabled, allows remote attackers to cause a denial of service via a SAM_UAS_CHANGE request with a length value that is larger than the number of structures that are provided.
How to fix CVE-2004-0808
To remediate CVE-2004-0808, upgrade the affected package to a fixed version below.
- Debian/samba—upgrade to 3.0.7 or later
Is CVE-2004-0808 being exploited?
Moderate — EPSS is 7.9%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 3.0.7