Skip to main content

Novell eDirectory iMonitor Buffer Overflow Vulnerability

Last Update Date: 28 Jan 2011 Release Date: 2 Mar 2009 4751 Views

RISK: Medium Risk

A vulnerability has been identified in Novell eDirectory, which could be exploited by remote attackers to cause a denial of service or compromise a vulnerable system. This issue is caused by a buffer overflow error in iMonitor when handling a malformed "Accept-Language" header, which could be exploited by remote attackers to crash an affected service or execute arbitrary code.


Impact

  • Denial of Service
  • Remote Code Execution

System / Technologies affected

  • Novell eDirectory versions prior to 8.8 SP3 FTF3

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Upgrade to Novell eDirectory 8.8 SP3 FTF3


Vulnerability Identifier

  • No CVE information is available

Source


Related Link