Denial of Service Vulnerability in Novell Netware 6.5 by Novell
CVE-2010-0317

Currently unrated

Key Information:

Vendor

Novell

Status
Vendor
CVE Published:
15 January 2010

Badges

๐Ÿ‘พ Exploit Exists๐ŸŸก Public PoC๐ŸŸฃ EPSS 10%

What is CVE-2010-0317?

Novell Netware 6.5 SP8 is vulnerable to a denial of service attack that can be triggered by remote attackers sending a significant number of malformed AFP or CIFS requests. This may lead to a NULL pointer dereference, causing memory consumption issues, a system ABEND, and ultimately a crash of the service. Proper validation of incoming requests is inadequate, exposing the system to these disruptions.

Exploit Proof of Concept (PoC)

PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.

References

EPSS Score

10% chance of being exploited in the next 30 days.

Timeline

  • ๐ŸŸก

    Public PoC available

  • ๐Ÿ‘พ

    Exploit known to exist

  • Vulnerability published

  • Vulnerability Reserved

.