CVE-2006-3403
Summary
| CVE | CVE-2006-3403 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-07-12 19:05:00 UTC |
| Updated | 2018-10-18 16:47:00 UTC |
| Description | The smdb daemon (smbd/service.c) in Samba 3.0.1 through 3.0.22 allows remote attackers to cause a denial of service (memory consumption) via a large number of share connection requests. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Samba | Samba | 3.0.1 | All | All | All |
| Application | Samba | Samba | 3.0.10 | All | All | All |
| Application | Samba | Samba | 3.0.11 | All | All | All |
| Application | Samba | Samba | 3.0.12 | All | All | All |
| Application | Samba | Samba | 3.0.13 | All | All | All |
| Application | Samba | Samba | 3.0.14 | All | All | All |
| Application | Samba | Samba | 3.0.14a | All | All | All |
| Application | Samba | Samba | 3.0.15 | All | All | All |
| Application | Samba | Samba | 3.0.16 | All | All | All |
| Application | Samba | Samba | 3.0.17 | All | All | All |
| Application | Samba | Samba | 3.0.18 | All | All | All |
| Application | Samba | Samba | 3.0.19 | All | All | All |
| Application | Samba | Samba | 3.0.2 | All | All | All |
| Application | Samba | Samba | 3.0.20a | All | All | All |
| Application | Samba | Samba | 3.0.20b | All | All | All |
| Application | Samba | Samba | 3.0.21 | All | All | All |
| Application | Samba | Samba | 3.0.21a | All | All | All |
| Application | Samba | Samba | 3.0.21b | All | All | All |
| Application | Samba | Samba | 3.0.21c | All | All | All |
| Application | Samba | Samba | 3.0.22 | All | All | All |
| Application | Samba | Samba | 3.0.3 | All | All | All |
| Application | Samba | Samba | 3.0.4 | All | All | All |
| Application | Samba | Samba | 3.0.5 | All | All | All |
| Application | Samba | Samba | 3.0.6 | All | All | All |
| Application | Samba | Samba | 3.0.7 | All | All | All |
| Application | Samba | Samba | 3.0.8 | All | All | All |
| Application | Samba | Samba | 3.0.9 | All | All | All |
| Application | Samba | Samba | 3.0.1 | All | All | All |
| Application | Samba | Samba | 3.0.10 | All | All | All |
| Application | Samba | Samba | 3.0.11 | All | All | All |
| Application | Samba | Samba | 3.0.12 | All | All | All |
| Application | Samba | Samba | 3.0.13 | All | All | All |
| Application | Samba | Samba | 3.0.14 | All | All | All |
| Application | Samba | Samba | 3.0.14a | All | All | All |
| Application | Samba | Samba | 3.0.15 | All | All | All |
| Application | Samba | Samba | 3.0.16 | All | All | All |
| Application | Samba | Samba | 3.0.17 | All | All | All |
| Application | Samba | Samba | 3.0.18 | All | All | All |
| Application | Samba | Samba | 3.0.19 | All | All | All |
| Application | Samba | Samba | 3.0.2 | All | All | All |
| Application | Samba | Samba | 3.0.20a | All | All | All |
| Application | Samba | Samba | 3.0.20b | All | All | All |
| Application | Samba | Samba | 3.0.21 | All | All | All |
| Application | Samba | Samba | 3.0.21a | All | All | All |
| Application | Samba | Samba | 3.0.21b | All | All | All |
| Application | Samba | Samba | 3.0.21c | All | All | All |
| Application | Samba | Samba | 3.0.22 | All | All | All |
| Application | Samba | Samba | 3.0.3 | All | All | All |
| Application | Samba | Samba | 3.0.4 | All | All | All |
| Application | Samba | Samba | 3.0.5 | All | All | All |
| Application | Samba | Samba | 3.0.6 | All | All | All |
| Application | Samba | Samba | 3.0.7 | All | All | All |
| Application | Samba | Samba | 3.0.8 | All | All | All |
| Application | Samba | Samba | 3.0.9 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Mac OS X Security Update Fixes Multiple Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| SecurityFocus | HP | www.securityfocus.com | |
| Advisories - Mandriva Linux | MANDRIVA | www.mandriva.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| US-CERT Technical Cyber Security Alert TA06-333A -- Apple Releases Security Update to Address Multiple Vulnerabilities | CERT | www.us-cert.gov | US Government Resource |
| Debian update for samba - Advisories - Secunia | SECUNIA | secunia.com | |
| VMware ESX Server 2.0.2 Upgrade Patch 2 (for 2.0.2 Systems) | CONFIRM | www.vmware.com | |
| usn/usn-314-1 - Ubuntu: Linux for human beings | UBUNTU | www.ubuntu.com | |
| Secunia - Advisories - Mandriva update for samba | SECUNIA | secunia.com | Patch, Vendor Advisory |
| Trustix updates for gnupg/samba - Advisories - Secunia | SECUNIA | secunia.com | |
| Security Announcement | SUSE | www.novell.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| SecurityTracker.com Archives - Samba smbd Memory Limit Error in make_connection() Lets Remote Users Deny Service | SECTRACK | securitytracker.com | |
| VMware ESX Server Multiple Vulnerabilities - Advisories - Secunia | SECUNIA | secunia.com | |
| APPLE-SA-2006-11-28 Security Update 2006-007 | APPLE | lists.apple.com | |
| VMware ESX Server 2.1.3 Upgrade Patch 2 (for 2.1.3 Systems Only) | CONFIRM | www.vmware.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Repository / Oval Repository | OVAL | oval.cisecurity.org | |
| Support | REDHAT | www.redhat.com | |
| Samba - Security Announcement Archive | CONFIRM | www.samba.org | Patch |
| Samba Internal Data Structures Denial of Service Vulnerability | BID | www.securityfocus.com | Patch |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Samba Multiple Share Connection Requests Denial of Service - Advisories - Secunia | SECUNIA | secunia.com | Patch, Vendor Advisory |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| The Slackware Linux Project: Slackware Security Advisories | SLACKWARE | slackware.com | |
| exploits , vulnerabilities , articles , Samba Internal Data Structures DOS Vulnerability Exploit | MISC | securitydot.net | |
| SGI Advanced Linux Environment Multiple Updates - Advisories - Secunia | SECUNIA | secunia.com | |
| Secunia - Advisories - Ubuntu update for samba | SECUNIA | secunia.com | |
| Webmail - OVH | VUPEN | www.vupen.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| 20060703-01-P | SGI | patches.sgi.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| About the security content of Security Update 2006-007 | CONFIRM | docs.info.apple.com | |
| SecurityFocus | BUGTRAQ | www.securityfocus.com | |
| Gentoo update for samba - Advisories - Secunia | SECUNIA | secunia.com | |
| Debian -- Security Information -- DSA-1110-1 samba | DEBIAN | www.debian.org | |
| VU#313836 - Samba fails to properly handle multiple share connection requests | CERT-VN | www.kb.cert.org | US Government Resource |
| Secunia - Advisories - rPath update for samba | SECUNIA | secunia.com | |
| SUSE Updates for Multiple Packages - Advisories - Secunia | SECUNIA | secunia.com | |
| Slackware update for samba - Secunia.com | SECUNIA | secunia.com | |
| Secunia - Advisories - Red Hat update for samba | SECUNIA | secunia.com | |
| Gentoo Linux Documentation -- Samba: Denial of Service vulnerability | GENTOO | security.gentoo.org | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.