CVE-2002-2432: Medium severity Novell Netware Ftp Server vulnerability
Published Apr 5, 2010
·Updated
Unspecified vulnerability in NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote attackers to cause a denial of service (abend) via a crafted username.
Affected Software
18 affected components
Novell Netware Ftp Server<=5.02y
Novell Netware Ftp Server=5.01i
Novell Netware Ftp Server=5.01o
Novell Netware Ftp Server=5.01w
Novell Netware Ftp Server=5.01y
Novell Netware Ftp Server=5.02b
Novell Netware Ftp Server=5.02i
Novell Netware Ftp Server=5.02r
Novell NetWare FTP Server
All of the following
Any of the following
Novell Netware Ftp Server<=5.02y
Novell Netware Ftp Server=5.01i
Novell Netware Ftp Server=5.01o
Novell Netware Ftp Server=5.01w
Novell Netware Ftp Server=5.01y
Novell Netware Ftp Server=5.02b
Novell Netware Ftp Server=5.02i
Novell Netware Ftp Server=5.02r
Novell NetWare FTP Server
Event History
Apr 5, 2010
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
Description
Data Sourced
03:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·03:30 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2002-2432?
CVE-2002-2432 has a severity rating that indicates it can cause a denial of service.
2
How do I fix CVE-2002-2432?
To fix CVE-2002-2432, upgrade to NWFTPD.nlm version 5.03b or later.
3
Who is affected by CVE-2002-2432?
CVE-2002-2432 affects users of Novell NetWare FTP Server versions up to and including 5.02y.
4
What type of attack is associated with CVE-2002-2432?
CVE-2002-2432 is associated with a denial of service attack triggered by a crafted username.
5
Is there a workaround for CVE-2002-2432?
There are no known workarounds for CVE-2002-2432; updating to the fixed version is recommended.