CVE-2008-3159: Buffer Overflow
Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers to execute arbitrary code via unspecified vectors that trigger a stack-based buffer overflow, related to "flawed arithmetic."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3159?
CVE-2008-3159 is considered a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2008-3159?
To fix CVE-2008-3159, update Novell eDirectory to versions 8.7.3 SP10b or 8.8.2 ftf2 or later.
What types of systems are affected by CVE-2008-3159?
CVE-2008-3159 affects Novell eDirectory versions 8.7.3 prior to SP10b and version 8.8 prior to 8.8.2 ftf2.
What causes the vulnerability CVE-2008-3159?
CVE-2008-3159 is caused by an integer overflow that can trigger a stack-based buffer overflow.
Can CVE-2008-3159 be exploited remotely?
Yes, CVE-2008-3159 can be exploited remotely by attackers through unspecified vectors.