eDirectory < 8.8.5.2/8.7.3.10 ftf2 'NDS Verb 0x1' Buffer Overflow

High Nessus Network Monitor Plugin ID 5251

Synopsis

The remote host is vulnerable to a remote command execution attack.

Description

The remote host is running eDirectory, a directory service from Novell. The installed version is earlier than 8.8 SP5 ftf2, or 8.7.3.10 ftf2. Such versions are potentially affected by a remote buffer overflow vulnerability when handling specially crafted 'NDS Verb 0x1' requests. An attacker, exploiting this flaw, could execute arbitrary commands on the host subject to the privileges of the affected software.

Solution

Upgrade to eDirectory 8.8 SP5 ftf2 / 8.7.3.10 ftf2 or later.

See Also

http://www.novell.com/support/viewContent.do?externalId=7004912

Plugin Details

Severity: High

ID: 5251

File Name: 5251.prm

Family: Generic

Published: 2009/12/04

Modified: 2016/01/15

Nessus ID: 43030

Risk Information

Risk Factor: High

CVSSv2

Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

CVSSv3

Base Score: 7.3

Temporal Score: 6.4

Vector: CVSS3#AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS3#E:U/RL:O/RC:C

Vulnerability Information

Patch Publication Date: 2009/12/01

Vulnerability Publication Date: 2009/12/01

Reference Information

CVE: CVE-2009-0895

BID: 37184

OSVDB: 60589