CVE-2010-4714: Buffer Overflow
Multiple stack-based buffer overflows in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long HTTP Host header to (1) gwpoa.exe in the Post Office Agent, (2) gwmta.exe in the Message Transfer Agent, (3) gwia.exe in the Internet Agent, (4) the WebAccess Agent, or (5) the Monitor Agent.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4714?
CVE-2010-4714 is classified as having high severity due to its potential to allow remote code execution.
How do I fix CVE-2010-4714?
To fix CVE-2010-4714, ensure that you upgrade to GroupWise version 8.02HP or later.
Which software versions are affected by CVE-2010-4714?
CVE-2010-4714 affects multiple versions of Novell GroupWise, specifically versions prior to 8.02HP.
What kind of attack does CVE-2010-4714 facilitate?
CVE-2010-4714 facilitates remote code execution attacks via specially crafted HTTP Host headers.
What components of Novell GroupWise are impacted by CVE-2010-4714?
CVE-2010-4714 impacts several components, including gwpoa.exe, gwmta.exe, gwia.exe, and the WebAccess Agent.