Novell eDirectory 'NDS Verb 0x1' Request Heap Based Buffer Overflow Vulnerability
BID:37184
Info
Novell eDirectory 'NDS Verb 0x1' Request Heap Based Buffer Overflow Vulnerability
| Bugtraq ID: | 37184 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2009-0895 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 01 2009 12:00AM |
| Updated: | Dec 11 2009 07:34PM |
| Credit: | Chris Valasek and John McDonald of the IBM X-Force |
| Vulnerable: |
Novell eDirectory 8.8.5 ftf1 Novell eDirectory 8.8.2 ftf2 Novell eDirectory 8.8.2 Novell eDirectory 8.8.1 Novell eDirectory 8.7.3 SP10b Novell eDirectory 8.7.3 SP10 FTF1 Novell eDirectory 8.7.3 sp10 Novell eDirectory 8.7.3 .8 pre-SP9 Novell eDirectory 8.7.3 .8 Novell eDirectory 8.7.3 Novell eDirectory 8.8 SP5 FTF1 Novell eDirectory 8.8 SP5 Novell eDirectory 8.8 SP4 FTF1 Novell eDirectory 8.8 SP4 Novell eDirectory 8.8 SP3 FTF3 Novell eDirectory 8.8 SP3 Novell eDirectory 8.8 SP2 Novell eDirectory 8.8 SP1 Novell eDirectory 8.8 Novell eDirectory 8.7.3.9 Novell eDirectory 8.7.3.10b Hotfix 1 Novell eDirectory 8.7.3.10 |
| Not Vulnerable: |
Novell eDirectory 8.8.5.2 Novell eDirectory 8.7.3.10 ftf2 |
Discussion
Novell eDirectory 'NDS Verb 0x1' Request Heap Based Buffer Overflow Vulnerability
Novell eDirectory is prone to a heap-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Attackers may exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
The issue affects the following:
eDirectory 8.7.3.10 ftf1 and prior
eDirectory 8.8.5 ftf1 and prior
Novell eDirectory is prone to a heap-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied data.
Attackers may exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely cause denial-of-service conditions.
The issue affects the following:
eDirectory 8.7.3.10 ftf1 and prior
eDirectory 8.8.5 ftf1 and prior
Exploit / POC
Novell eDirectory 'NDS Verb 0x1' Request Heap Based Buffer Overflow Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Novell eDirectory 'NDS Verb 0x1' Request Heap Based Buffer Overflow Vulnerability
Solution:
The vendor has released an advisory and fixes. Please see the references for details.
Solution:
The vendor has released an advisory and fixes. Please see the references for details.
References
Novell eDirectory 'NDS Verb 0x1' Request Heap Based Buffer Overflow Vulnerability
References:
References:
- eDirectory Product Homepage (Novell)
- Applicaton control request overflow (IBM XForce)
- Security Vulnerability: Novell eDirectory Heap-based Buffer Overflow (Novell)