Netscape Enterprise Server for NetWare Admin Buffer Overflow Vulnerability
BID:865
Info
Netscape Enterprise Server for NetWare Admin Buffer Overflow Vulnerability
| Bugtraq ID: | 865 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Dec 08 1999 12:00AM |
| Updated: | Dec 08 1999 12:00AM |
| Credit: | Posted to Bugtraq on November 8, 1999 by Brian Eckman <[email protected]>. |
| Vulnerable: |
Netscape Enterprise Server for NetWare 4/5 3.0.7 a |
| Not Vulnerable: | |
Discussion
Netscape Enterprise Server for NetWare Admin Buffer Overflow Vulnerability
The Netscape Enterprise Server for NetWare 4/5 includes an Admin feature that is vulnerable to denial of service attacks due to an unchecked buffer in admserv.nlm, in the login procedure. If a username longer than 310 characters is supplied, the Admin server crashes. Normal web serving functionalty is unaffected, but remote administration is not possible until the server is restarted.
Note: The Enterprise Server for Netware is supported by Netware, not Netscape. Check the web pages in the credit section for more details.
The Netscape Enterprise Server for NetWare 4/5 includes an Admin feature that is vulnerable to denial of service attacks due to an unchecked buffer in admserv.nlm, in the login procedure. If a username longer than 310 characters is supplied, the Admin server crashes. Normal web serving functionalty is unaffected, but remote administration is not possible until the server is restarted.
Note: The Enterprise Server for Netware is supported by Netware, not Netscape. Check the web pages in the credit section for more details.
Exploit / POC
Netscape Enterprise Server for NetWare Admin Buffer Overflow Vulnerability
see discussion
see discussion
Solution / Fix
Netscape Enterprise Server for NetWare Admin Buffer Overflow Vulnerability
Solution:
Novell has released a fix for this issue, available in the latest service pack for NetWare 5.1. Novell's recommendation for users of 5.0 is to upgrade to 5.1 and apply the service pack.
Solution:
Novell has released a fix for this issue, available in the latest service pack for NetWare 5.1. Novell's recommendation for users of 5.0 is to upgrade to 5.1 and apply the service pack.
References
Netscape Enterprise Server for NetWare Admin Buffer Overflow Vulnerability
References:
References: