First published: Tue Mar 22 2011(Updated: )
Stack-based buffer overflow in NWFTPD.NLM before 5.10.02 in the FTP server in Novell NetWare allows remote authenticated users to execute arbitrary code or cause a denial of service (abend) via a long DELE command, a different vulnerability than CVE-2010-0625.4.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell NetWare | =5.1 | |
Novell NetWare | =6.0 | |
Novell NetWare | =6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4228 has a high severity rating due to its potential to allow remote code execution or denial of service.
To fix CVE-2010-4228, upgrade to NWFTPD.NLM version 5.10.02 or later to address the buffer overflow vulnerability.
CVE-2010-4228 affects users of Novell NetWare versions 5.1, 6.0, and 6.5 that utilize the NWFTPD service.
CVE-2010-4228 can be exploited through a long DELE command sent by a remote authenticated user.
The potential impacts of CVE-2010-4228 include arbitrary code execution and denial of service, leading to system instability.