First published: Fri Dec 31 2004(Updated: )
ACLCHECK module in Novell iChain 2.3 allows attackers to bypass access control rules of an unspecified component via an unspecified attack vector involving a string that contains escape sequences represented with "overlong UTF-8 encoding."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell iChain | =2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2579 is considered a significant security vulnerability as it allows attackers to bypass access control rules.
To fix CVE-2004-2579, you should apply any available patches for Novell iChain 2.3 and review your access control configurations.
CVE-2004-2579 affects the ACLCHECK module within Novell iChain 2.3.
CVE-2004-2579 involves an unspecified attack vector that uses overlong UTF-8 encoding to bypass access controls.
Organizations using Novell iChain 2.3 are at risk due to CVE-2004-2579.