CVE-2002-2434: Medium severity Novell Netware Ftp Server vulnerability
Published Apr 5, 2010
·Updated
NWFTPD.nlm before 5.02i in the FTP server in Novell NetWare does not properly listen for data connections, which allows remote attackers to cause a denial of service (abend) via multiple FTP sessions.
Affected Software
16 affected components
Novell Netware Ftp Server<=5.02b
Novell Netware Ftp Server=5.01i
Novell Netware Ftp Server=5.01o
Novell Netware Ftp Server=5.01w
Novell Netware Ftp Server=5.01y
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=6.0
Novell NetWare FTP Server=6.5
All of the following
Any of the following
Novell Netware Ftp Server<=5.02b
Novell Netware Ftp Server=5.01i
Novell Netware Ftp Server=5.01o
Novell Netware Ftp Server=5.01w
Novell Netware Ftp Server=5.01y
Any of the following
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=6.0
Novell NetWare FTP Server=6.5
Event History
Apr 5, 2010
CVE Published
via MITRE·03:15 PM
Data Sourced
via MITRE·03:15 PM
Description
Data Sourced
03:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·03:30 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2002-2434?
CVE-2002-2434 is classified as a denial of service vulnerability.
2
How do I fix CVE-2002-2434?
To mitigate CVE-2002-2434, upgrade to Novell NetWare FTP Server version 5.02i or later.
3
Which versions of Novell NetWare are affected by CVE-2002-2434?
CVE-2002-2434 affects Novell NetWare FTP Server versions up to and including 5.02b and specific earlier versions like 5.01i, 5.01o, 5.01w, and 5.01y.
4
Can CVE-2002-2434 be exploited remotely?
Yes, CVE-2002-2434 can be exploited remotely through multiple FTP sessions.
5
What type of attack does CVE-2002-2434 enable?
CVE-2002-2434 enables attackers to cause a denial of service attack leading to system abend.