CVE-2006-6307: Medium severity novell client vulnerability
Published Dec 5, 2006
·Updated
srvloc.sys in Novell Client for Windows before 4.91 SP3 allows remote attackers to cause an unspecified denial of service via a crafted packet to port 427 that triggers an access of pageable or invalid addresses using a higher interrupt request level (IRQL) than necessary.
Affected Software
1 affected component
Novell client=4.91-sp2
Remediation
Patch Available
Event History
Dec 5, 2006
CVE Published
11:28 AM
Data Sourced
via NVD·11:28 AM
RemedyDescriptionSeverityAffected Software
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-6307?
CVE-2006-6307 is categorized as a denial of service vulnerability.
2
How do I fix CVE-2006-6307?
To fix CVE-2006-6307, upgrade to Novell Client for Windows version 4.91 SP3 or later.
3
What systems are affected by CVE-2006-6307?
CVE-2006-6307 affects the Novell Client for Windows versions prior to 4.91 SP3, specifically 4.91 SP2.
4
What type of attack is possible with CVE-2006-6307?
CVE-2006-6307 allows remote attackers to cause a denial of service by sending crafted packets to port 427.
5
What component is involved in CVE-2006-6307?
The vulnerability is related to the srvloc.sys component in the Novell Client for Windows.