OpenBSD VuXML: Documenting security issues in the OpenBSD Ports & Packages Collection

samba -- potential buffer overrun with 'mangling method = hash'

Affected packages
samba < 2.2.10

Details

VuXML ID 194d4b1e-dcce-11d8-8ec2-00304f19272c
Discovery 2004-07-14
Entry 2004-07-23
Modified 2005-02-21

A buffer overrun has been located in the code used to support the 'mangling method = hash' smb.conf option. The default setting for this parameter is "mangling method = hash2" and therefore not vulnerable.

References

CVE Name CAN-2004-0686
URL http://www.samba.org/samba/whatsnew/samba-2.2.10.html