RULE(RULE ID:711280)

Rule General Information
Release Date: 2014-11-21
Rule Name: PROTOCOL-NETBIOS Samba SWAT HTTP Authentication Buffer Overflow Vulnerability (CVE-2004-0600)
Severity:
CVE ID:
Rule Protection Details
Description: Buffer overflow in the Samba Web Administration Tool (SWAT) in Samba 3.0.2 to 3.0.4 allows remote attackers to execute arbitrary code via an invalid base-64 character during HTTP basic authentication.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service.
Affected OS: Other Unix, FreeBSD, Linux
Reference: http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000851
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000854
http://marc.info/?l=bugtraq&m=109051340810458&w=2
Solutions
Upgrade to version 3.0.5 to solve the problem.