CVE-2010-4299: Buffer Overflow
Published Nov 20, 2010
·Updated
Heap-based buffer overflow in ZfHIPCND.exe in Novell Zenworks 7 Handheld Management (ZHM) allows remote attackers to execute arbitrary code via a crafted request to TCP port 2400.
Affected Software
2 affected components
Novell ZENworks Handheld Management=7-sp1
Novell ZENworks Handheld Management=7
Remediation
Patch Available
Event History
Nov 20, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4299?
CVE-2010-4299 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2010-4299?
To mitigate CVE-2010-4299, update to the latest version of Novell ZENworks Handheld Management, specifically beyond service pack 1.
3
What software does CVE-2010-4299 affect?
CVE-2010-4299 affects Novell ZENworks Handheld Management version 7 including service pack 1.
4
What type of attack is associated with CVE-2010-4299?
CVE-2010-4299 allows remote attackers to execute arbitrary code via a crafted request.
5
What is the vector for exploitation in CVE-2010-4299?
The vulnerability can be exploited through TCP port 2400.