CVE-2010-3109: Buffer Overflow
Published Aug 23, 2010
·Updated
Stack-based buffer overflow in the browser plugin in Novell iPrint Client before 5.42 allows remote attackers to execute arbitrary code via a long operation parameter.
Affected Software
14 affected components
Novell iPrint<=5.40
Novell iPrint=4.26
Novell iPrint=4.27
Novell iPrint=4.28
Novell iPrint=4.30
Novell iPrint=4.32
Novell iPrint=4.34
Novell iPrint=4.36
Novell iPrint=4.38
Novell iPrint=5.04
Novell iPrint=5.12
Novell iPrint=5.20b
Novell iPrint=5.30
Novell iPrint=5.32
Remediation
Patch Available
Patch Available
Event History
Aug 23, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3109?
CVE-2010-3109 has a critical severity level due to the potential for remote code execution.
2
How do I fix CVE-2010-3109?
To fix CVE-2010-3109, update the Novell iPrint Client to version 5.42 or later.
3
What are the affected versions in CVE-2010-3109?
CVE-2010-3109 affects Novell iPrint Client versions before 5.42, including various 4.x and 5.x releases.
4
What type of vulnerability is CVE-2010-3109?
CVE-2010-3109 is a stack-based buffer overflow vulnerability within the browser plugin of the Novell iPrint Client.
5
Can CVE-2010-3109 be exploited remotely?
Yes, CVE-2010-3109 can be exploited remotely by leveraging a specially crafted long operation parameter.