HIGH
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName
Published Jun 21, 2010
10.0
HIGHCVSS 2.0
EPSS 15.72%
Description
Stack-based buffer overflow in the CIFS.NLM driver in Netware SMB 1.0 for Novell Netware 6.5 SP8 and earlier allows remote attackers to execute arbitrary code via a Sessions Setup AndX packet with a long AccountName.
Affected products
No data.
OR
- ≤ 6.5
- 5.0
- 5.0
- 5.1
- 5.1
- 6.0
- 6.0
- 6.0
- 6.0
- 6.0
- 6.5
- 6.5
- 6.5
- 6.5
- 6.5
- 6.5
- 6.5
- 6.5
- 5.1
- 6.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (7)
- http://download.novell.com/Download?buildid=tMWCI1cdI7s~ x_refsource_CONFIRMPatch
- http://secunia.com/advisories/40199 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.exploit-db.com/exploits/13906 exploitx_refsource_EXPLOIT-DB
- http://www.securityfocus.com/bid/40908 vdb-entryx_refsource_BIDExploit
- http://www.stratsec.net/Research/Advisories/SS-2010-006-Netware-SMB-Remote-Stack-Overflow x_refsource_MISCExploit
- http://www.vupen.com/english/advisories/2010/1514 vdb-entryx_refsource_VUPENVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/59501 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://download.novell.com/Download?buildid=tMWCI1cdI7s~ | x_refsource_CONFIRMPatch | |
| http://secunia.com/advisories/40199 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.exploit-db.com/exploits/13906 | exploitx_refsource_EXPLOIT-DB | |
| http://www.securityfocus.com/bid/40908 | vdb-entryx_refsource_BIDExploit | |
| http://www.stratsec.net/Research/Advisories/SS-2010-006-Netware-SMB-Remote-Stack-Overflow | x_refsource_MISCExploit | |
| http://www.vupen.com/english/advisories/2010/1514 | vdb-entryx_refsource_VUPENVendor Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/59501 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 21, 2010
Updated Aug 7, 2024
Reserved Jun 21, 2010
Link CVE-2010-2351
CISA Vulnrichment
Updated n/a