Back to Database
Status published
Critical
CVE-2003-0201
Buffer overflow in the call_trans2open function in trans2.c for Samba...
Vulnerability Description
Buffer overflow in the call_trans2open function in trans2.c for Samba 2.2.x before 2.2.8a, 2.0.10 and earlier 2.0.x versions, and Samba-TNG before 0.3.2, allows remote attackers to execute arbitrary code.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2003-0201
Credits & Attribution
No credits recorded in the NVD database.
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000624
- http://marc.info/?l=bugtraq&m=104981682014565&w=2
- ftp://patches.sgi.com/support/free/security/advisories/20030403-01-P
- http://www.novell.com/linux/security/advisories/2003_025_samba.html
- http://www.securityfocus.com/bid/7294
- http://www.digitaldefense.net/labs/advisories/DDI-1013.txt
- http://marc.info/?l=bugtraq&m=104972664226781&w=2
- http://www.debian.org/security/2003/dsa-280
- http://marc.info/?l=bugtraq&m=104994564212488&w=2
- http://www.kb.cert.org/vuls/id/267873
- http://www.mandriva.com/security/advisories?name=MDKSA-2003:044
- http://www.redhat.com/support/errata/RHSA-2003-137.html
- http://marc.info/?l=bugtraq&m=104974612519064&w=2
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A567
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2163
More from samba
View All →CVE-2022-29869
cifs-utils through 6.14, with verbose logging, can cause an information...
Medium
5.3
CVE-2022-29154
An issue was discovered in rsync before 3.2.5 that allows...
High
7.4
CVE-2022-27239
In cifs-utils through 6.14, a stack-based buffer overflow when parsing...
High
7.8
CVE-2021-43566
All versions of Samba prior to 4.13.16 are vulnerable to...
Low
2.5
CVE-2020-14342
It was found that cifs-utils' mount.cifs was invoking a shell...
Medium
4.4
Affected Vendor
samba
View all reports →Affected Software
samba, samba-tng, mac os x, tru64, hp-ux, solaris, sunos, cifs-9000 server
Vulnerable Versions:
2.0.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, 2.0.6, 2.0.7, 2.0.8, 2.0.9, 2.0.10, 2.2.0, 2.2.0a, 2.2.1a, 2.2.3a, 2.2.4, 2.2.5, 2.2.6, 2.2.7, 2.2.7a, 2.2.8, 0.3, 0.3.1, 10.2, 10.2.1, 10.2.2, 10.2.3, 10.2.4, 4.0b, 4.0d, 4.0d_pk9_bl17, 4.0f, 4.0f_pk6_bl17, 4.0f_pk7_bl18, 4.0g, 4.0g_pk3_bl17, 5.0, 5.0_pk4_bl17, 5.0_pk4_bl18, 5.0a, 5.0a_pk3_bl17, 5.0f, 5.1, 5.1_pk3_bl17, 5.1_pk4_bl18, 5.1_pk5_bl19, 5.1_pk6_bl20, 5.1a, 5.1a_pk1_bl1, 5.1a_pk2_bl2, 5.1a_pk3_bl3, 5.1b, 5.1b_pk1_bl1, 10.01, 10.20, 10.24, 11.00, 11.04, 11.11, 11.20, 11.22, 2.5.1, 2.6, 7.0, 8.0, 9.0, 5.5.1, 5.7, 5.8, a.01.05, a.01.06, a.01.07, a.01.08, a.01.08.01, a.01.09, a.01.09.01, a.01.09.02
Timeline
Official Publish:
April 15th, 2003
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.