CVE-2007-1350: Buffer Overflow
Published Mar 8, 2007
·Updated
Stack-based buffer overflow in webadmin.exe in Novell NetMail 3.5.2 allows remote attackers to execute arbitrary code via a long username during HTTP Basic authentication.
Affected Software
6 affected components
Novell Netmail=3.5.2-a
Novell Netmail=3.5.2-b
Novell Netmail=3.5.2-c
Novell Netmail=3.5.2-c1
Novell Netmail=3.5.2-d
Novell Netmail=3.5.2-e-ftfl
Remediation
Patch Available
Patch Available
Event History
Mar 8, 2007
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1350?
CVE-2007-1350 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2007-1350?
To mitigate CVE-2007-1350, upgrade Novell NetMail to a version that addresses the stack-based buffer overflow vulnerability.
3
What platforms are affected by CVE-2007-1350?
CVE-2007-1350 affects Novell NetMail versions 3.5.2-a, 3.5.2-b, 3.5.2-c, 3.5.2-c1, 3.5.2-d, and 3.5.2-e-ftfl.
4
What type of vulnerability is CVE-2007-1350?
CVE-2007-1350 is classified as a stack-based buffer overflow vulnerability.
5
Can CVE-2007-1350 be exploited remotely?
Yes, CVE-2007-1350 can be exploited remotely via HTTP Basic authentication with a long username.