CVE-2004-0815
Last modified
CVE-2004-0815 is a vulnerability of currently unknown severity. The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames.. EPSS estimates a 4.89% chance of exploitation in the next 30 days.
Description
The unix_clean_name function in Samba 2.2.x through 2.2.11, and 3.0.x before 3.0.2a, trims certain directory names down to absolute paths, which could allow remote attackers to bypass the specified share restrictions and read, write, or list arbitrary files via "/.////" style sequences in pathnames.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | 2.2.0 |
| Samba | Samba | 2.2.0a |
| Samba | Samba | 2.2.1a |
| Samba | Samba | 2.2.2 |
| Samba | Samba | 2.2.3 |
| Samba | Samba | 2.2.3a |
| Samba | Samba | 2.2.4 |
| Samba | Samba | 2.2.5 |
| Samba | Samba | 2.2.6 |
| Samba | Samba | 2.2.7 |
| Samba | Samba | 2.2.7a |
| Samba | Samba | 2.2.8 |
| Samba | Samba | 2.2.8a |
| Samba | Samba | 2.2.9 |
| Samba | Samba | 2.2.11 |
| Samba | Samba | 2.2a |
| Samba | Samba | 3.0.0 |
| Samba | Samba | 3.0.1 |
| Samba | Samba | 3.0.2 |
| Samba | Samba | 3.0.2a |
References
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000873Patch, Vendor Advisory
- http://www.debian.org/security/2004/dsa-600Patch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=146&type=vulnerabilities&flashstatus=trueExploit, Vendor Advisory
- http://www.securityfocus.com/bid/11281Patch, Vendor Advisory
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000873Patch, Vendor Advisory
- http://www.debian.org/security/2004/dsa-600Patch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=146&type=vulnerabilities&flashstatus=trueExploit, Vendor Advisory
- http://www.securityfocus.com/bid/11281Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-0815?
How severe is CVE-2004-0815?
How do I fix CVE-2004-0815?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2004
- CVE-2004-0809The mod_dav module in Apache 2.0.50 and earlier allows remot…
- CVE-2004-0810Buffer overflow in Netopia Timbuktu 7.0.3 allows remote atta…
- CVE-2004-0811Unknown vulnerability in Apache 2.0.51 prevents "the merging…
- CVE-2004-0812Unknown vulnerability in the Linux kernel before 2.4.23, on …
- CVE-2004-0813Unknown vulnerability in the SG_IO functionality in ide-cd a…
- CVE-2004-0814Multiple race conditions in the terminal layer in Linux 2.4.…
- CVE-2004-0816Integer underflow in the firewall logging rules for iptables…7.5
- CVE-2004-0817Multiple heap-based buffer overflows in the imlib BMP image …
- CVE-2004-0818Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2004-0819The bridge functionality in OpenBSD 3.4 and 3.5, when runnin…
- CVE-2004-0820Winamp before 5.0.4 allows remote attackers to execute arbit…
- CVE-2004-0821The CFPlugIn in Core Foundation framework in Mac OS X allows…
Are you affected by CVE-2004-0815?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
