Novell GroupWise Date/Time Parsing Denial of Service Vulnerability
BID:55574
Info
Novell GroupWise Date/Time Parsing Denial of Service Vulnerability
| Bugtraq ID: | 55574 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-3827 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 17 2012 12:00AM |
| Updated: | Sep 17 2012 12:00AM |
| Credit: | Carsten Eiram of Secunia Research |
| Vulnerable: |
Novell Groupwise 8.02 HP3 |
| Not Vulnerable: | |
Discussion
Novell GroupWise Date/Time Parsing Denial of Service Vulnerability
Novell GroupWise is prone to a denial-of-service vulnerability because the application fails to verify user-supplied inputs.
Attackers can exploit this issue to crash the affected application, denying service to legitimate users.
Novell GroupWise 8.0.2 HP3 is vulnerable.
Novell GroupWise is prone to a denial-of-service vulnerability because the application fails to verify user-supplied inputs.
Attackers can exploit this issue to crash the affected application, denying service to legitimate users.
Novell GroupWise 8.0.2 HP3 is vulnerable.
Exploit / POC
Novell GroupWise Date/Time Parsing Denial of Service Vulnerability
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Novell GroupWise Date/Time Parsing Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Novell GroupWise Date/Time Parsing Denial of Service Vulnerability
References:
References:
- Novell GroupWise Homepage (Novell)