vendor:
Netware
by:
Laurent GaffiƩ
7.5
CVSS
HIGH
Stack Overflow
121
CWE
Product Name: Netware
Affected Version From: 6.5 SP8
Affected Version To: 6.5
Patch Exists: YES
Related CWE:
CPE: o:novell:netware:6.5
Platforms Tested:
2010
Netware SMB Remote Stack Overflow
A vulnerability exists in the Netware CIFS.NLM driver which allows an attacker to trigger a kernel stack overflow by sending a specific 'Sessions Setup AndX' query. Successful exploitation of this issue will result in remote code execution with kernel privileges. Failed attempts may result in a remote denial of service.
Mitigation:
Patch available