CVE-2005-2852: Medium severity Novell NetWare FTP Server vulnerability
Published Sep 8, 2005
·Updated
Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.
Affected Software
4 affected components
Novell NetWare FTP Server=6.5-sp3
Novell NetWare FTP Server=5.1
Novell NetWare FTP Server=6.5-sp2
Novell NetWare FTP Server=6.0
Remediation
Event History
Sep 8, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2852?
CVE-2005-2852 has a moderate severity level as it allows remote attackers to cause a denial of service.
2
How do I fix CVE-2005-2852?
To fix CVE-2005-2852, ensure you are using the latest patches and updates provided by Novell for your affected NetWare version.
3
Which Novell NetWare versions are affected by CVE-2005-2852?
CVE-2005-2852 affects Novell NetWare versions 6.0, 6.5 SP2, 6.5 SP3, and 5.1.
4
What type of attack does CVE-2005-2852 allow?
CVE-2005-2852 allows remote attackers to exploit an incorrect password length to cause a denial of service.
5
Is CVE-2005-2852 exploited by any known malware?
Yes, CVE-2005-2852 has been exploited by the worm known as "worm.rbot.ccc".