CVE-2006-6299: Buffer Overflow
Published Dec 5, 2006
·Updated
Integer overflow in Msg.dll in Novell ZENworks 7 Asset Management (ZAM) before SP1 IR11 and the Collection client allows remote attackers to execute arbitrary code via crafted packets, which trigger a heap-based buffer overflow.
Affected Software
1 affected component
Novell ZENworks Asset Management=7-sp1
Remediation
Patch Available
Patch Available
Event History
Dec 5, 2006
CVE Published
11:28 AM
Data Sourced
via NVD·11:28 AM
RemedyDescriptionSeverityAffected Software
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-6299?
CVE-2006-6299 has a critical severity level due to the potential for remote code execution.
2
How do I fix CVE-2006-6299?
To fix CVE-2006-6299, update to Novell ZENworks 7 Asset Management SP1 IR11 or a later version.
3
What vulnerability type is CVE-2006-6299?
CVE-2006-6299 is classified as a heap-based buffer overflow caused by an integer overflow.
4
What systems are affected by CVE-2006-6299?
CVE-2006-6299 affects Novell ZENworks Asset Management version 7 before SP1 IR11.
5
What impacts can CVE-2006-6299 have if exploited?
If exploited, CVE-2006-6299 allows attackers to execute arbitrary code on affected systems.