CVE-2010-3108: Buffer Overflow
Published Aug 23, 2010
·Updated
Buffer overflow in the browser plugin in Novell iPrint Client before 5.42 allows remote attackers to execute arbitrary code by using EMBED elements to pass parameters with long names.
Affected Software
14 affected components
Novell iPrint=5.20b
Novell iPrint=5.30
Novell iPrint=4.34
Novell iPrint=4.38
Novell iPrint=4.27
Novell iPrint<=5.40
Novell iPrint=4.32
Novell iPrint=4.26
Novell iPrint=5.12
Novell iPrint=4.36
Novell iPrint=4.28
Novell iPrint=5.32
Novell iPrint=4.30
Novell iPrint=5.04
Remediation
Patch Available
Patch Available
Event History
Aug 23, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3108?
CVE-2010-3108 is categorized as a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2010-3108?
To fix CVE-2010-3108, upgrade the Novell iPrint Client to version 5.42 or later.
3
What systems are affected by CVE-2010-3108?
CVE-2010-3108 affects Novell iPrint Client versions prior to 5.42.
4
Can CVE-2010-3108 be exploited remotely?
Yes, CVE-2010-3108 can be exploited remotely via crafted EMBED elements.
5
What is the impact of exploiting CVE-2010-3108?
Exploitation of CVE-2010-3108 may allow an attacker to execute arbitrary code on the affected system.