Novell_Distributed_Print_Services_Integer_Overflow_attack

Strike ID:
G06-4sn01
CVSS:
6.4 (AV:N/AC:L/Au:N/C:N/I:P/A:P)
False Positive:
t
Variants:
1
Year:
2006

Description

This strike exploits an integer overflow vulnerability in Novell Distributed Print Services module in multiple Novell products. The vulnerability is caused due to lack of proper boundary checks prior to the calculation of the size of a memory buffer. An unauthenticated attacker may exploit this vulnerability to inject and execute arbitrary code in the context of the vulnerable application, Super User in the Netware systems.

CVE

References

Bid