Stack-Based Buffer Overflow in Novell eDirectory for Windows
CVE-2009-4653

Currently unrated

Key Information:

Vendor
Novell
Vendor
CVE Published:
26 February 2010

Summary

A stack-based buffer overflow exists in the dhost module of Novell eDirectory 8.8 SP5 for Windows, which allows remote authenticated users to send a specially crafted long string to the /dhost/modules?I: endpoint. This can result in a denial of service due to the crash of dhost.exe and poses a risk of arbitrary code execution, potentially compromising the integrity and security of the system. Proper measures should be taken to mitigate this vulnerability.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.