PT-2005-3681 · Novell · Groupwise
Francisco Amato
·
Published
2005-10-04
·
Updated
2017-07-11
·
CVE-2005-2804
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
GroupWise versions 6.5.3 and possibly earlier
Description
The issue is related to an integer overflow in the registry parsing code, which can be exploited by remote attackers to cause a denial of service, resulting in an application crash. This can be achieved by specifying a large TCP/IP port in the Windows registry key.
Recommendations
For GroupWise version 6.5.3 and possibly earlier, at the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Groupwise