CVE-2010-1527: Buffer Overflow
Published Aug 23, 2010
·Updated
Stack-based buffer overflow in Novell iPrint Client before 5.44 allows remote attackers to execute arbitrary code via a long call-back-url parameter in an op-client-interface-version action.
Affected Software
15 affected components
Novell iPrint=5.20b
Novell iPrint=5.30
Novell iPrint=4.34
Novell iPrint=4.38
Novell iPrint=4.27
Novell iPrint=4.32
Novell iPrint=4.26
Novell iPrint=5.12
Novell iPrint=4.36
Novell iPrint=4.28
Novell iPrint<=5.42
Novell iPrint=5.32
Novell iPrint=5.40
Novell iPrint=4.30
Novell iPrint=5.04
Event History
Aug 23, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-1527?
CVE-2010-1527 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2010-1527?
To fix CVE-2010-1527, update to Novell iPrint Client version 5.44 or later.
3
What platforms are affected by CVE-2010-1527?
CVE-2010-1527 affects Novell iPrint Client versions up to and including 5.42, as well as versions 4.26 to 5.40.
4
What type of attack does CVE-2010-1527 enable?
CVE-2010-1527 enables remote attackers to execute arbitrary code on affected systems.
5
Is there a workaround for CVE-2010-1527 if I cannot update?
There is no known workaround for CVE-2010-1527, so updating to a fixed version is recommended.