PT-2003-1767 · Novell · Novell Ichain
Axel Dunkel
·
Published
2003-08-02
·
Updated
2016-10-18
·
CVE-2003-0638
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
Novell iChain versions 2.1 before Field Patch 3
Novell iChain versions 2.2 before Field Patch 1a
Description:
The issue is related to multiple buffer overflows that can cause a denial of service (ABEND) and possibly allow the execution of arbitrary code. This can be achieved by providing a long
username or through an unknown attack related to a special script against login.Recommendations:
For Novell iChain version 2.1, apply Field Patch 3 to resolve the issue.
For Novell iChain version 2.2, apply Field Patch 1a to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Novell Ichain