Stack-Based Buffer Overflow in Novell eDirectory for Windows
CVE-2009-4653
Currently unrated
Summary
A stack-based buffer overflow exists in the dhost module of Novell eDirectory 8.8 SP5 for Windows, which allows remote authenticated users to send a specially crafted long string to the /dhost/modules?I: endpoint. This can result in a denial of service due to the crash of dhost.exe and poses a risk of arbitrary code execution, potentially compromising the integrity and security of the system. Proper measures should be taken to mitigate this vulnerability.
References
EPSS Score
6% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved