Novell NetWare NFS Portmapper and RPC Module Stack Buffer Overflow Vulnerability
BID:36564
Info
Novell NetWare NFS Portmapper and RPC Module Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 36564 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 30 2009 12:00AM |
| Updated: | Nov 17 2010 09:06AM |
| Credit: | Nick DeBaggis |
| Vulnerable: |
Novell Netware 6.5.0 SP8 |
| Not Vulnerable: | |
Discussion
Novell NetWare NFS Portmapper and RPC Module Stack Buffer Overflow Vulnerability
Novell NetWare is prone to a remote stack-based buffer-overflow vulnerability.
Attackers could exploit this issue to execute arbitrary code within the context of the NetWare NFS Portmapper daemon. Successfully exploiting this issue will completely compromise affected computers. Failed exploit attempts will result in a denial-of-service condition.
NetWare 6.5 SP8 is vulnerable; other versions may also be affected.
Novell NetWare is prone to a remote stack-based buffer-overflow vulnerability.
Attackers could exploit this issue to execute arbitrary code within the context of the NetWare NFS Portmapper daemon. Successfully exploiting this issue will completely compromise affected computers. Failed exploit attempts will result in a denial-of-service condition.
NetWare 6.5 SP8 is vulnerable; other versions may also be affected.
Exploit / POC
Novell NetWare NFS Portmapper and RPC Module Stack Buffer Overflow Vulnerability
The following exploit is available:
The following exploit is available:
Solution / Fix
Novell NetWare NFS Portmapper and RPC Module Stack Buffer Overflow Vulnerability
Solution:
Vendor updates are available. Please see the references for details.
Solution:
Vendor updates are available. Please see the references for details.
References
Novell NetWare NFS Portmapper and RPC Module Stack Buffer Overflow Vulnerability
References:
References: