First published: Tue Oct 24 2006(Updated: )
Integer overflow in the evtFilteredMonitorEventsRequest function in the LDAP service in Novell eDirectory before 8.8.1 FTF1 allows remote attackers to execute arbitrary code via a crafted request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell Edirectory | =8.8 | |
Novell Edirectory | =8.8.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4509 is considered critical as it allows remote attackers to execute arbitrary code.
To fix CVE-2006-4509, upgrade Novell eDirectory to version 8.8.1 FTF1 or later.
CVE-2006-4509 affects Novell eDirectory versions 8.8 and 8.8.1 before FTF1.
Yes, CVE-2006-4509 can be exploited remotely by sending a crafted request to the LDAP service.
CVE-2006-4509 facilitates remote code execution attacks through an integer overflow vulnerability.