Samba 3.0.6 and earlier allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via certain malformed requests that cause new processes to be spawned and enter an infinite loop.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Samba | Samba | 3.0.0 (including) | 3.0.0 (including) |
| Samba | Samba | 3.0.1 (including) | 3.0.1 (including) |
| Samba | Samba | 3.0.2 (including) | 3.0.2 (including) |
| Samba | Samba | 3.0.2a (including) | 3.0.2a (including) |
| Samba | Samba | 3.0.3 (including) | 3.0.3 (including) |
| Samba | Samba | 3.0.4 (including) | 3.0.4 (including) |
| Samba | Samba | 3.0.4-rc1 (including) | 3.0.4-rc1 (including) |
| Samba | Samba | 3.0.5 (including) | 3.0.5 (including) |
| Samba | Samba | 3.0.6 (including) | 3.0.6 (including) |
| Samba | Sgi | 3.0 (including) | 3.0 (including) |
| Samba | Sgi | 3.0.1 (including) | 3.0.1 (including) |
| Samba | Sgi | 3.0.2 (including) | 3.0.2 (including) |
| Samba | Sgi | 3.0.3 (including) | 3.0.3 (including) |
| Samba | Sgi | 3.0.4 (including) | 3.0.4 (including) |
| Samba | Sgi | 3.0.5 (including) | 3.0.5 (including) |
| Samba | Sgi | 3.0.6 (including) | 3.0.6 (including) |
| Linux | Conectiva | 9.0 (including) | 9.0 (including) |
| Linux | Conectiva | 10.0 (including) | 10.0 (including) |
| Red Hat Enterprise Linux 3 | RedHat | samba-0:3.0.7-1.3E | * |
| Samba | Ubuntu | devel | * |