Novell iPrint Client Multiple Remote Code Execution Vulnerabilities
BID:51926
Info
Novell iPrint Client Multiple Remote Code Execution Vulnerabilities
| Bugtraq ID: | 51926 |
| Class: | Unknown |
| CVE: |
CVE-2011-4185 CVE-2011-4186 CVE-2011-4187 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 08 2012 12:00AM |
| Updated: | Aug 29 2012 03:50PM |
| Credit: | gwslabs.com, Brian Gorenc and Ivan Rodriguez Almuina via ZDI |
| Vulnerable: |
Novell iPrint Client 5.77 Novell iPrint Client 5.76 Novell iPrint Client 5.75 Novell iPrint Client 5.74 Novell iPrint Client 5.73 Novell iPrint Client 5.72 Novell iPrint Client 5.64 Novell iPrint Client 5.56 Novell iPrint Client 5.52 Novell iPrint Client 5.44 Novell iPrint Client 5.32 Novell iPrint Client 5.30 Novell iPrint Client 5.08 Novell iPrint Client 5.06 Novell iPrint Client 5.04 Novell iPrint Client 4.38 Novell iPrint Client 4.36 Novell iPrint Client 4.34 |
| Not Vulnerable: |
Novell iPrint Client 5.78 |
Discussion
Novell iPrint Client Multiple Remote Code Execution Vulnerabilities
Novell iPrint Client is prone to multiple remote code-execution vulnerabilities.
Attackers may exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in a denial-of-service condition.
Versions prior to Novell iPrint Client 5.78 are vulnerable.
Novell iPrint Client is prone to multiple remote code-execution vulnerabilities.
Attackers may exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in a denial-of-service condition.
Versions prior to Novell iPrint Client 5.78 are vulnerable.
Exploit / POC
Novell iPrint Client Multiple Remote Code Execution Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Novell iPrint Client Multiple Remote Code Execution Vulnerabilities
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
Novell iPrint Client Multiple Remote Code Execution Vulnerabilities
References:
References:
- History of iPrint Client fixes (version 5.40 thru 5.78) (Novell)
- Novell Homepage (Novell)
- iPrint Client for Windows XP/Vista/Win 7 5.64 (Novell)
- Novell iPrint nipplib.dll client-file-name Parsing Remote Code Execution Vulnera (HP)
- ZDI-12-102: Novell iPrint Client nipplib.dll GetDriverSettings realm Remote Code (HP)