PT-2003-1766 · Novell · Novell Ichain

Published

2003-08-02

·

Updated

2024-02-15

·

CVE-2003-0637

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Novell iChain version 2.2 before Support Pack 1
Description: The issue allows remote attackers to guess usernames and conduct brute force password guessing more easily due to a shorter timeout for non-existent users compared to valid users.
Recommendations: For Novell iChain version 2.2 before Support Pack 1, apply Support Pack 1 to resolve the issue.

Fix

Side Channel Attack

Weakness Enumeration

Related Identifiers

CVE-2003-0637

Affected Products

Novell Ichain