eDirectory < ftf2 'NDS Verb 0x1' Buffer Overflow

High Nessus Network Monitor Plugin ID 5251


The remote host is vulnerable to a remote command execution attack.


The remote host is running eDirectory, a directory service from Novell. The installed version is earlier than 8.8 SP5 ftf2, or ftf2. Such versions are potentially affected by a remote buffer overflow vulnerability when handling specially crafted 'NDS Verb 0x1' requests. An attacker, exploiting this flaw, could execute arbitrary commands on the host subject to the privileges of the affected software.


Upgrade to eDirectory 8.8 SP5 ftf2 / ftf2 or later.

See Also


Plugin Details

Severity: High

ID: 5251

File Name: 5251.prm

Family: Generic

Published: 2009/12/04

Modified: 2016/01/15

Nessus ID: 43030

Risk Information

Risk Factor: High


Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:U/RL:OF/RC:C


Base Score: 7.3

Temporal Score: 6.4


Temporal Vector: CVSS3#E:U/RL:O/RC:C

Vulnerability Information

Patch Publication Date: 2009/12/01

Vulnerability Publication Date: 2009/12/01

Reference Information

CVE: CVE-2009-0895

BID: 37184

OSVDB: 60589