Novell ZENworks Configuration Management Preboot Service Stack Buffer Overflow Vulnerability
BID:40486
Info
Novell ZENworks Configuration Management Preboot Service Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 40486 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 30 2010 12:00AM |
| Updated: | Jun 28 2010 03:48PM |
| Credit: | Stephen Fewer of Harmony Security |
| Vulnerable: |
Novell ZENworks Configuration Management 10.1.2 a Novell ZENworks Configuration Management 10.1.2 Novell ZENworks Configuration Management 10.1 |
| Not Vulnerable: |
Novell ZENworks Configuration Management 10.3 |
Discussion
Novell ZENworks Configuration Management Preboot Service Stack Buffer Overflow Vulnerability
Novell ZENworks Configuration Management is prone to a stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary-checks on user-supplied data.
An attacker can leverage this issue to execute arbitrary code with SYSTEM-level privileges. Successful exploits will compromise the affected application. Failed exploit attempts will result in a denial-of-service condition.
Versions prior to ZENworks Configuration Management 10.3 are vulnerable.
Novell ZENworks Configuration Management is prone to a stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary-checks on user-supplied data.
An attacker can leverage this issue to execute arbitrary code with SYSTEM-level privileges. Successful exploits will compromise the affected application. Failed exploit attempts will result in a denial-of-service condition.
Versions prior to ZENworks Configuration Management 10.3 are vulnerable.
Exploit / POC
Novell ZENworks Configuration Management Preboot Service Stack Buffer Overflow Vulnerability
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploits are available:
Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.
The following exploits are available:
Solution / Fix
Novell ZENworks Configuration Management Preboot Service Stack Buffer Overflow Vulnerability
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
Novell ZENworks Configuration Management Preboot Service Stack Buffer Overflow Vulnerability
References:
References:
- Novell ZENworks Configuration Management Preboot Service Remote Code Execution V (Zero Day Initiative)
- Security Vulnerability with ZCM Preboot Service (Novell)
- ZENworks Configuration Management Homepage (Novell)
- ZDI-10-090: Novell ZENworks Configuration Management Preboot Service Remote Cod (ZDI Disclosures
)