CVE-2008-4480: Buffer Overflow
Heap-based buffer overflow in dhost.exe in Novell eDirectory 8.x before 8.8.3, and 8.7.3 before 8.7.3.10 ftf1, allows remote attackers to execute arbitrary code via a crafted Netware Core Protocol opcode 0x24 message that triggers a calculation error that under-allocates a heap buffer.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-4480?
CVE-2008-4480 is considered a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2008-4480?
To mitigate CVE-2008-4480, upgrade Novell eDirectory to version 8.8.3 or later, or apply any relevant security patches provided by Novell.
What type of vulnerability is CVE-2008-4480?
CVE-2008-4480 is categorized as a heap-based buffer overflow vulnerability.
Who is affected by CVE-2008-4480?
CVE-2008-4480 affects Novell eDirectory versions prior to 8.8.3 and 8.7.3 before 8.7.3.10.
What can an attacker achieve with CVE-2008-4480?
An attacker exploiting CVE-2008-4480 could execute arbitrary code on the affected system.