Stack-based buffer overflow in the ExecuteRequest method in the Novell iPrint ActiveX control in ienipp.ocx in Novell iPrint Client 5.06 and earlier allows remote attackers to execute arbitrary code via a long target-frame option value, a different vulnerability than CVE-2008-2431.
2008-11-26T01:30:00.420
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | novell | iprint | ≤ 5.04 | Yes |
Application | novell | iprint | 4.26 | Yes |
Application | novell | iprint | 4.27 | Yes |
Application | novell | iprint | 4.28 | Yes |
Application | novell | iprint | 4.30 | Yes |
Application | novell | iprint | 4.32 | Yes |
Application | novell | iprint | 4.34 | Yes |
Application | novell | iprint | 4.36 | Yes |
Application | novell | iprint | 4.38 | Yes |