Heap-Based Buffer Overflow in Novell eDirectory Product
CVE-2008-4479
Currently unrated
What is CVE-2008-4479?
A heap-based buffer overflow vulnerability exists in the dhost.exe component of Novell eDirectory versions prior to 8.8.3 and 8.7.3.10 ftf1. This flaw potentially allows remote adversaries to execute arbitrary code by sending a specially crafted SOAP request containing an excessively long Accept-Language header. Organizations using affected versions are encouraged to apply the latest patches to mitigate the risk associated with this vulnerability.