{"api_version":"1","generated_at":"2026-07-23T08:58:10+00:00","cve":"CVE-2008-5038","urls":{"html":"https://cve.report/CVE-2008-5038","api":"https://cve.report/api/cve/CVE-2008-5038.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2008-5038","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2008-5038"},"summary":{"title":"CVE-2008-5038","description":"Use-after-free vulnerability in the NetWare Core Protocol (NCP) feature in Novell eDirectory 8.7.3 SP10 before 8.7.3 SP10 FTF1 and 8.8 SP2 for Windows allows remote attackers to cause a denial of service and possibly execute arbitrary code via a sequence of \"Get NCP Extension Information By Name\" requests that cause one thread to operate on memory after it has been freed in another thread, which triggers memory corruption, aka Novell Bug 373852.","state":"PUBLISHED","assigner":"mitre","published_at":"2008-11-12 21:09:03","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-416","n/a"],"metrics":[{"version":"3.1","source":"nvd@nist.gov","type":"Primary","score":"9.8","severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"10","severity":"","vector":"AV:N/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.novell.com/support/viewContent.do?externalId=3426981","name":"http://www.novell.com/support/viewContent.do?externalId=3426981","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"History of Issues Resolved in eDirectory 8.8.x","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/46138","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/46138","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037180.html","name":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037180.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch","Vendor Advisory"],"title":"Novell eDirectory 20080924","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://osvdb.org/48206","name":"http://osvdb.org/48206","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2008/2937","name":"http://www.vupen.com/english/advisories/2008/2937","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/32395","name":"http://secunia.com/advisories/32395","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Vendor Advisory"],"title":"Novell eDirectory NCP Unspecified Vulnerability - Secunia Advisories - Vulnerability Intelligence - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1021117","name":"http://www.securitytracker.com/id?1021117","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"Novell eDirectory NCP Request Processing Bug Lets Remote Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/31956","name":"http://www.securityfocus.com/bid/31956","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"Novell eDirectory NCP Get Extension Information Request Remote Heap Memory Corruption Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037181.html","name":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037181.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch"],"title":"Novell eDirectory 20080924","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=748","name":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=748","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"https://www.cve.org/CVERecord?id=CVE-2008-5038","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2008-5038","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp1","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp2","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp3","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp4","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp5","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp6","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp7","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp8","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.7.3","cpe7":"sp9","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2008","cve_id":"5038","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"novell","cpe5":"edirectory","cpe6":"8.8","cpe7":"-","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T10:40:17.403Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.novell.com/support/viewContent.do?externalId=3426981"},{"name":"20081030 Novell eDirectory NCP Get Extension Information Request Memory Corruption Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE","x_transferred"],"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=748"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037181.html"},{"name":"32395","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/32395"},{"name":"31956","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/31956"},{"name":"48206","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/48206"},{"name":"1021117","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1021117"},{"name":"novell-edirectory-ncp-unspecified(46138)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/46138"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037180.html"},{"name":"ADV-2008-2937","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2008/2937"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2008-10-23T00:00:00.000Z","descriptions":[{"lang":"en","value":"Use-after-free vulnerability in the NetWare Core Protocol (NCP) feature in Novell eDirectory 8.7.3 SP10 before 8.7.3 SP10 FTF1 and 8.8 SP2 for Windows allows remote attackers to cause a denial of service and possibly execute arbitrary code via a sequence of \"Get NCP Extension Information By Name\" requests that cause one thread to operate on memory after it has been freed in another thread, which triggers memory corruption, aka Novell Bug 373852."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-08-07T12:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_CONFIRM"],"url":"http://www.novell.com/support/viewContent.do?externalId=3426981"},{"name":"20081030 Novell eDirectory NCP Get Extension Information Request Memory Corruption Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE"],"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=748"},{"tags":["x_refsource_CONFIRM"],"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037181.html"},{"name":"32395","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/32395"},{"name":"31956","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/31956"},{"name":"48206","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/48206"},{"name":"1021117","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1021117"},{"name":"novell-edirectory-ncp-unspecified(46138)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/46138"},{"tags":["x_refsource_CONFIRM"],"url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037180.html"},{"name":"ADV-2008-2937","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2008/2937"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2008-5038","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Use-after-free vulnerability in the NetWare Core Protocol (NCP) feature in Novell eDirectory 8.7.3 SP10 before 8.7.3 SP10 FTF1 and 8.8 SP2 for Windows allows remote attackers to cause a denial of service and possibly execute arbitrary code via a sequence of \"Get NCP Extension Information By Name\" requests that cause one thread to operate on memory after it has been freed in another thread, which triggers memory corruption, aka Novell Bug 373852."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://www.novell.com/support/viewContent.do?externalId=3426981","refsource":"CONFIRM","url":"http://www.novell.com/support/viewContent.do?externalId=3426981"},{"name":"20081030 Novell eDirectory NCP Get Extension Information Request Memory Corruption Vulnerability","refsource":"IDEFENSE","url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=748"},{"name":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037181.html","refsource":"CONFIRM","url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037181.html"},{"name":"32395","refsource":"SECUNIA","url":"http://secunia.com/advisories/32395"},{"name":"31956","refsource":"BID","url":"http://www.securityfocus.com/bid/31956"},{"name":"48206","refsource":"OSVDB","url":"http://osvdb.org/48206"},{"name":"1021117","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1021117"},{"name":"novell-edirectory-ncp-unspecified(46138)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/46138"},{"name":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037180.html","refsource":"CONFIRM","url":"http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5037180.html"},{"name":"ADV-2008-2937","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2008/2937"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2008-5038","datePublished":"2008-11-12T20:18:00.000Z","dateReserved":"2008-11-12T00:00:00.000Z","dateUpdated":"2024-08-07T10:40:17.403Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2008-11-12 21:09:03","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-416","n/a"],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:C/I:C/A:C","baseScore":10,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:*:*:*:*:*:*:*:*","versionEndExcluding":"8.7.3","matchCriteriaId":"069FE430-EFDA-40B2-8775-52130BC609D3"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp1:*:*:*:windows:*:*","matchCriteriaId":"4CC3E9C7-F5B1-4B68-AE32-BDE725E4C69C"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp2:*:*:*:windows:*:*","matchCriteriaId":"1959434F-9887-43A7-BCE3-E83B2B85332A"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp3:*:*:*:windows:*:*","matchCriteriaId":"BC6D86F1-7C4B-4D4F-9434-667B8A3B68F5"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp4:*:*:*:windows:*:*","matchCriteriaId":"B5AFAE6C-E1EA-4B8D-98A3-DF1EC8D97D34"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp5:*:*:*:windows:*:*","matchCriteriaId":"3FDA680E-0549-43F9-B4A5-A983743370B4"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp6:*:*:*:windows:*:*","matchCriteriaId":"26A68A9C-D888-4535-BBFF-0465EC573319"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp7:*:*:*:windows:*:*","matchCriteriaId":"8967E2BF-9C16-4328-BA7D-76EC6B43B3AB"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp8:*:*:*:windows:*:*","matchCriteriaId":"99BBADD0-FB28-4665-90BD-DA02EB05CB6C"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.7.3:sp9:*:*:*:windows:*:*","matchCriteriaId":"DDBA1FE5-7C01-44F9-9E9C-12C29CAB5A66"},{"vulnerable":true,"criteria":"cpe:2.3:a:novell:edirectory:8.8:-:*:*:*:windows:*:*","matchCriteriaId":"C3C6B247-7DE0-4B2F-BE11-EF4CEED803F2"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2008","CveId":"5038","Ordinal":"1","Title":"CVE-2008-5038","CVE":"CVE-2008-5038","Year":"2008"},"notes":[{"CveYear":"2008","CveId":"5038","Ordinal":"1","NoteData":"Use-after-free vulnerability in the NetWare Core Protocol (NCP) feature in Novell eDirectory 8.7.3 SP10 before 8.7.3 SP10 FTF1 and 8.8 SP2 for Windows allows remote attackers to cause a denial of service and possibly execute arbitrary code via a sequence of \"Get NCP Extension Information By Name\" requests that cause one thread to operate on memory after it has been freed in another thread, which triggers memory corruption, aka Novell Bug 373852.","Type":"Description","Title":"CVE-2008-5038"},{"CveYear":"2008","CveId":"5038","Ordinal":"2","NoteData":"2008-11-12","Type":"Other","Title":"Published"},{"CveYear":"2008","CveId":"5038","Ordinal":"3","NoteData":"2017-08-07","Type":"Other","Title":"Modified"}]}}}