CVE-2007-2171: Buffer Overflow
Published Apr 24, 2007
·Updated
Stack-based buffer overflow in the base64decode function in GWINTER.exe in Novell GroupWise (GW) WebAccess before 7.0 SP2 allows remote attackers to execute arbitrary code via long base64 content in an HTTP Basic Authentication request.
Affected Software
2 affected components
Novell GroupWise=7.0
Novell GroupWise=7.0-sp1
Remediation
Patch Available
Patch Available
Event History
Apr 24, 2007
CVE Published
08:19 PM
Apr 25, 2007
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2171?
CVE-2007-2171 has been classified as critical due to its potential for remote code execution.
2
How do I fix CVE-2007-2171?
To resolve CVE-2007-2171, update to Novell GroupWise version 7.0 SP2 or later.
3
What systems are affected by CVE-2007-2171?
CVE-2007-2171 affects Novell GroupWise versions 7.0 and 7.0 SP1.
4
What type of vulnerability is CVE-2007-2171?
CVE-2007-2171 is a stack-based buffer overflow vulnerability.
5
Can CVE-2007-2171 be exploited remotely?
Yes, CVE-2007-2171 can be exploited remotely via specially crafted HTTP requests.