smbd in Samba 3.0.6 through 3.0.23d allows remote authenticated users to cause a denial of service (memory and CPU exhaustion) by renaming a file in a way that prevents a request from being removed from the deferred open queue, which triggers an infinite loop.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Samba | Samba | 3.0.6 (including) | 3.0.6 (including) |
Samba | Samba | 3.0.7 (including) | 3.0.7 (including) |
Samba | Samba | 3.0.8 (including) | 3.0.8 (including) |
Samba | Samba | 3.0.9 (including) | 3.0.9 (including) |
Samba | Samba | 3.0.10 (including) | 3.0.10 (including) |
Samba | Samba | 3.0.11 (including) | 3.0.11 (including) |
Samba | Samba | 3.0.12 (including) | 3.0.12 (including) |
Samba | Samba | 3.0.13 (including) | 3.0.13 (including) |
Samba | Samba | 3.0.14a (including) | 3.0.14a (including) |
Samba | Samba | 3.0.20 (including) | 3.0.20 (including) |
Samba | Samba | 3.0.20a (including) | 3.0.20a (including) |
Samba | Samba | 3.0.20b (including) | 3.0.20b (including) |
Samba | Samba | 3.0.21 (including) | 3.0.21 (including) |
Samba | Samba | 3.0.21a (including) | 3.0.21a (including) |
Samba | Samba | 3.0.21b (including) | 3.0.21b (including) |
Samba | Samba | 3.0.21c (including) | 3.0.21c (including) |
Samba | Samba | 3.0.22 (including) | 3.0.22 (including) |
Samba | Samba | 3.0.23 (including) | 3.0.23 (including) |
Samba | Samba | 3.0.23a (including) | 3.0.23a (including) |
Samba | Samba | 3.0.23b (including) | 3.0.23b (including) |
Samba | Samba | 3.0.23c (including) | 3.0.23c (including) |
Samba | Samba | 3.0.23d (including) | 3.0.23d (including) |
Red Hat Enterprise Linux 3 | RedHat | samba-0:3.0.9-1.3E.12 | * |
Red Hat Enterprise Linux 4 | RedHat | samba-0:3.0.10-1.4E.11 | * |
Red Hat Enterprise Linux 5 | RedHat | samba-0:3.0.23c-2.el5.2 | * |
Samba | Ubuntu | dapper | * |
Samba | Ubuntu | devel | * |
Samba | Ubuntu | edgy | * |
Samba | Ubuntu | feisty | * |