PT-2005-2525 · Novell · Novell Zenworks 6.5 Desktop Management+2

Alex Wheeler

·

Published

2005-05-25

·

Updated

2017-07-11

·

CVE-2005-1543

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Novell ZENworks 6.5 Desktop and Server Management versions (affected versions not specified) Novell ZENworks for Desktops versions 4.x Novell ZENworks for Servers versions 3.x
Description The issue concerns multiple stack-based and heap-based buffer overflows in the Remote Management authentication component, specifically in zenrem32.exe. This allows remote attackers to execute arbitrary code through various vectors, including type 1 and type 2 authentication requests.
Recommendations For Novell ZENworks 6.5 Desktop and Server Management, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Novell ZENworks for Desktops versions 4.x, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For Novell ZENworks for Servers versions 3.x, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1543

Affected Products

Novell Zenworks 6.5 Desktop Management
Novell Zenworks For Desktops
Novell Zenworks For Servers