Integer overflow in Novell eDirectory 8.7.3.x before 8.7.3.10 ftf2 and 8.8.x before 8.8.5.2 allows remote attackers to execute arbitrary code via an NDS Verb 0x1 request containing a large integer value that triggers a heap-based buffer overflow.
2009-12-03T17:30:00.407
2025-04-09T00:30:58.490
Deferred
CVSSv2: 10.0 (HIGH)
AV:N/AC:L/Au:N/C:C/I:C/A:C
10.0
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3 | Yes |
Application | novell | edirectory | 8.7.3.8 | Yes |
Application | novell | edirectory | 8.7.3.9 | Yes |
Application | novell | edirectory | 8.7.3.10 | Yes |
Application | novell | edirectory | 8.8 | Yes |
Application | novell | edirectory | 8.8 | Yes |
Application | novell | edirectory | 8.8 | Yes |
Application | novell | edirectory | 8.8 | Yes |
Application | novell | edirectory | 8.8 | Yes |
Application | novell | edirectory | 8.8.1 | Yes |
Application | novell | edirectory | 8.8.2 | Yes |
Application | novell | edirectory | 8.8.2 | Yes |
Application | novell | edirectory | 8.8.5 | Yes |