CVE-2010-0625

Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long (1) MKD, (2) RMD, (3) RNFR, or (4) DELE command.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:novell:netware_ftp_server:5.01i:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.01o:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.01w:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.01y:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.02b:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.02i:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.02r:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.02y:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.03b:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.03l:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.04.5:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.04.8:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.04.20:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.04.25:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.05:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.05.04:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.06.04:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.06.05:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.07:*:*:*:*:*:*:*
cpe:2.3:a:novell:netware_ftp_server:5.07.02:*:*:*:*:*:*:*
OR cpe:2.3:o:novell:netware:5.1:*:*:*:*:*:*:*
cpe:2.3:o:novell:netware:5.1:sp2a:*:*:*:*:*:*
cpe:2.3:o:novell:netware:5.1:sp3:*:*:*:*:*:*
cpe:2.3:o:novell:netware:5.1:sp4:*:*:*:*:*:*
cpe:2.3:o:novell:netware:5.1:sp6:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.0:*:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.0:sp1:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.0:sp2:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.0:sp3:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:*:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp1:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp1.1a:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp1.1b:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp2:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp3:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp4:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp5:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp6:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp7:*:*:*:*:*:*
cpe:2.3:o:novell:netware:6.5:sp8:*:*:*:*:*:*

History

21 Nov 2024, 01:12

Type Values Removed Values Added
References () http://secunia.com/advisories/39151 - Vendor Advisory () http://secunia.com/advisories/39151 - Vendor Advisory
References () http://securitytracker.com/id?1023768 - () http://securitytracker.com/id?1023768 -
References () http://www.novell.com/support/viewContent.do?externalId=3238588&sliceId=1 - () http://www.novell.com/support/viewContent.do?externalId=3238588&sliceId=1 -
References () http://www.protekresearchlab.com/index.php?option=com_content&view=article&id=12&Itemid=12 - () http://www.protekresearchlab.com/index.php?option=com_content&view=article&id=12&Itemid=12 -
References () http://www.securityfocus.com/archive/1/510353/100/0/threaded - () http://www.securityfocus.com/archive/1/510353/100/0/threaded -
References () http://www.securityfocus.com/archive/1/510557/100/0/threaded - () http://www.securityfocus.com/archive/1/510557/100/0/threaded -
References () http://www.securityfocus.com/bid/39041 - () http://www.securityfocus.com/bid/39041 -
References () http://www.vupen.com/english/advisories/2010/0742 - Vendor Advisory () http://www.vupen.com/english/advisories/2010/0742 - Vendor Advisory
References () http://www.zerodayinitiative.com/advisories/ZDI-10-062 - () http://www.zerodayinitiative.com/advisories/ZDI-10-062 -
References () https://bugzilla.novell.com/show_bug.cgi?id=569496 - () https://bugzilla.novell.com/show_bug.cgi?id=569496 -

Information

Published : 2010-04-05 16:30

Updated : 2025-04-11 00:51


NVD link : CVE-2010-0625

Mitre link : CVE-2010-0625

CVE.ORG link : CVE-2010-0625


JSON object : View

Products Affected

novell

  • netware_ftp_server
  • netware
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer