CVE-2010-4327: Medium severity micro focus netiq edirectory vulnerability
Published Feb 10, 2011
·Updated
Unspecified vulnerability in the NCP service in Novell eDirectory 8.8.5 before 8.8.5.6 and 8.8.6 before 8.8.6.2 allows remote attackers to cause a denial of service (hang) via a malformed FileSetLock request to port 524.
Affected Software
2 affected components
Novell eDirectory=8.8.5
Novell eDirectory=8.8.6
Event History
Feb 10, 2011
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4327?
CVE-2010-4327 has a high severity level as it allows remote attackers to cause a denial of service.
2
How do I fix CVE-2010-4327?
To fix CVE-2010-4327, you should upgrade Novell eDirectory to version 8.8.5.6 or later for 8.8.5 and to version 8.8.6.2 or later for 8.8.6.
3
What are the affected versions of eDirectory for CVE-2010-4327?
The affected versions for CVE-2010-4327 are Novell eDirectory 8.8.5 prior to 8.8.5.6 and 8.8.6 prior to 8.8.6.2.
4
What type of attack does CVE-2010-4327 involve?
CVE-2010-4327 involves a denial of service attack that can be triggered by a malformed FileSetLock request.
5
On which port does the vulnerability CVE-2010-4327 occur?
CVE-2010-4327 occurs through port 524, which is used by the NCP service.