Novell eDirectory iMonitor 'Accept-Language' Request Buffer Overflow Vulnerability
BID:33928
Info
Novell eDirectory iMonitor 'Accept-Language' Request Buffer Overflow Vulnerability
| Bugtraq ID: | 33928 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 25 2009 12:00AM |
| Updated: | Mar 02 2009 05:46PM |
| Credit: | Vulnerability Research Team, Assurent Secure Technologies, a TELUS company |
| Vulnerable: |
Novell eDirectory 8.7.3 SP10b Novell eDirectory 8.7.3 SP10 FTF1 Novell eDirectory 8.7.3 sp10 Novell eDirectory 8.7.3 .8 pre-SP9 Novell eDirectory 8.7.3 .8 Novell eDirectory 8.7.3 Novell eDirectory 8.8 SP4 Novell eDirectory 8.8 SP3 Novell eDirectory 8.8 SP2 Novell eDirectory 8.8 SP1 Novell eDirectory 8.8 Novell eDirectory 8.7.3.9 Novell eDirectory 8.7.3.10 |
| Not Vulnerable: |
Novell eDirectory 8.8 SP4 FTF1 Novell eDirectory 8.8 SP3 FTF3 Novell eDirectory 8.7.3.10b Hotfix 1 |
Discussion
Novell eDirectory iMonitor 'Accept-Language' Request Buffer Overflow Vulnerability
Novell eDirectory iMonitor is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Attackers could exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
The following are vulnerable:
Novell eDirectory 8.7.3 (prior to 8.7.3.10b Hotfix 1)
Novell eDirectory 8.8 SP3 (prior to 8.8 SP3 FTF3)
Novell eDirectory 8.8 SP4 (prior to 8.8 SP4 FTF1)
Novell eDirectory iMonitor is prone to a buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Attackers could exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
The following are vulnerable:
Novell eDirectory 8.7.3 (prior to 8.7.3.10b Hotfix 1)
Novell eDirectory 8.8 SP3 (prior to 8.8 SP3 FTF3)
Novell eDirectory 8.8 SP4 (prior to 8.8 SP4 FTF1)
Exploit / POC
Novell eDirectory iMonitor 'Accept-Language' Request Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
The following proof of concept is available:
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
The following proof of concept is available:
Solution / Fix
Novell eDirectory iMonitor 'Accept-Language' Request Buffer Overflow Vulnerability
Solution:
The vendor has released patches. Please see the references for more information.
Solution:
The vendor has released patches. Please see the references for more information.
References
Novell eDirectory iMonitor 'Accept-Language' Request Buffer Overflow Vulnerability
References:
References:
- Assurent VR - Novell eDirectory Management Console Accept-Language Buffer Overfl (VR-Subscription-noreply_at_assurent.com)
- eDirectory Product Homepage (Novell)
- eDirectory 8.8 SP3 FTF3 for Linux & Unix (Novell)
- eDirectory 8.8 SP3 FTF3 for NetWare (Novell)
- eDirectory 8.8 SP3 FTF3 for Windows (Novell)