The Trans2open Vulnerability
The trans2open vulnerability, sometimes also referred to as ”trans2 vulnerability”, is a weakness that can be found in Samba versions 2.2.0 to 2.2.8. It was disclosed in 2003, at which time the Samba Port 139 was one of the most attacked ports worldwide. The vulnerability consists in a buffer overflow (BOF) that can be exploited remotely. Basically, this overflow provides an advasery with lots of attacking options. For once, it can be used to execute arbitrary code on the affected system and even open a reverse-shell with root privilidges. Another exploitation include implanting a backdoor. The trans2open vulnerability poses an extreme danger to any system that employs an effected Samba version and should be removed immediately.
Related CVE include CVE-2003-0196, CVE-2003-0201 and CVE-2003-0345.