PT-2003-1767 · Novell · Novell Ichain

Axel Dunkel

·

Published

2003-08-02

·

Updated

2016-10-18

·

CVE-2003-0638

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Novell iChain versions 2.1 before Field Patch 3 Novell iChain versions 2.2 before Field Patch 1a
Description: The issue is related to multiple buffer overflows that can cause a denial of service (ABEND) and possibly allow the execution of arbitrary code. This can be achieved by providing a long username or through an unknown attack related to a special script against login.
Recommendations: For Novell iChain version 2.1, apply Field Patch 3 to resolve the issue. For Novell iChain version 2.2, apply Field Patch 1a to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2003-0638

Affected Products

Novell Ichain