CVE-2002-2433: Input Validation
Published Apr 5, 2010
·Updated
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command.
Affected Software
22 affected components
Novell Netware Ftp Server<=5.02y
Novell Netware Ftp Server=5.01i
Novell Netware Ftp Server=5.01o
Novell Netware Ftp Server=5.01w
Novell Netware Ftp Server=5.01y
Novell Netware Ftp Server=5.02b
Novell Netware Ftp Server=5.02i
Novell Netware Ftp Server=5.02r
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=6.0
Novell NetWare FTP Server=6.5
All of the following
Any of the following
Novell Netware Ftp Server<=5.02y
Novell Netware Ftp Server=5.01i
Novell Netware Ftp Server=5.01o
Novell Netware Ftp Server=5.01w
Novell Netware Ftp Server=5.01y
Novell Netware Ftp Server=5.02b
Novell Netware Ftp Server=5.02i
Novell Netware Ftp Server=5.02r
Any of the following
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=6.0
Novell NetWare FTP Server=6.5
Event History
Apr 5, 2010
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
Description
Data Sourced
03:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·03:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2002-2433?
CVE-2002-2433 is considered to have a high severity due to its potential to cause a denial of service.
2
How do I fix CVE-2002-2433?
To mitigate CVE-2002-2433, you should upgrade to a version of NWFTPD.nlm that is 5.03b or later.
3
Who is affected by CVE-2002-2433?
Users of Novell NetWare FTP Server versions 5.02y and earlier, as well as specific versions like 5.01i, 5.01o, 5.01w, and 5.02b, are affected by CVE-2002-2433.
4
What type of attack does CVE-2002-2433 enable?
CVE-2002-2433 enables authenticated remote users to execute a crafted ABOR command that results in a denial of service.
5
When was CVE-2002-2433 disclosed?
CVE-2002-2433 was disclosed in the year 2002.