Vulnerability in Novell iPrint Client ActiveX Control Allows Code Execution
CVE-2010-3106

Currently unrated

Key Information:

Vendor
Novell
Status
Vendor
CVE Published:
23 August 2010

Summary

The ienipp.ocx ActiveX control in the Novell iPrint Client fails to adequately validate the debug parameter. This oversight allows remote attackers to exploit the vulnerability by sending a specially crafted parameter value, which can result in the execution of arbitrary code or a denial of service due to stack memory corruption. This issue is pertinent for users of versions prior to 5.42, as it can have significant security implications if left unaddressed.

References

EPSS Score

55% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.