PT-2011-4880 · Novell · Novell Netware+1

Published

2011-11-30

·

Updated

2011-11-30

·

CVE-2011-4191

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Novell NetWare version 6.5 SP8
Description The issue is a stack-based buffer overflow in the xdrDecodeString function in XNFS.NLM, allowing remote attackers to execute arbitrary code or cause a denial of service, such as an abend or NFS outage, via long packets.
Recommendations For Novell NetWare version 6.5 SP8, consider restricting access to the XNFS.NLM module to minimize the risk of exploitation until a patch is available.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-4191

Affected Products

Novell Netware
Xnfs.Nlm