CVE-2010-4717: Buffer Overflow
Published Jan 31, 2011
·Updated
Multiple stack-based buffer overflows in the IMAP server component in GroupWise Internet Agent (GWIA) in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long (1) LIST or (2) LSUB command.
Affected Software
32 affected components
Novell GroupWise<=8.0.2
Novell GroupWise=4.1
Novell GroupWise=4.1a
Novell GroupWise=5.0
Novell GroupWise=5.1
Novell GroupWise=5.2
Novell GroupWise=5.5
Novell GroupWise=5.5
Novell GroupWise=5.57e
Novell GroupWise=6.0
Novell GroupWise=6.0-sp1
Novell GroupWise=6.0-sp5
Novell GroupWise=6.0.1-sp1
Novell GroupWise=6.5
Novell GroupWise=6.5-sp1
Novell GroupWise=6.5-sp2
Novell GroupWise=6.5-sp3
Novell GroupWise=6.5-sp4
Novell GroupWise=6.5-sp5
Novell GroupWise=6.5-sp6
Novell GroupWise=6.5.2
Novell GroupWise=6.5.3
Novell GroupWise=6.5.4
Novell GroupWise=6.5.6
Novell GroupWise=6.5.7
Novell GroupWise=7.0
Novell GroupWise=7.0.1
Novell GroupWise=7.0.2
Novell GroupWise=7.0.3
Novell GroupWise=7.0.4
Novell GroupWise=8.0
Novell GroupWise=8.0.1
Event History
Jan 31, 2011
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4717?
CVE-2010-4717 is a critical vulnerability that may allow remote attackers to execute arbitrary code on affected systems.
2
How do I fix CVE-2010-4717?
To fix CVE-2010-4717, update your Novell GroupWise software to version 8.02HP or later.
3
Which versions of Novell GroupWise are affected by CVE-2010-4717?
CVE-2010-4717 affects multiple versions including GroupWise 6.0, 6.5, and 7.x prior to 8.02HP.
4
Can CVE-2010-4717 be exploited remotely?
Yes, CVE-2010-4717 can be exploited remotely through specially crafted IMAP commands.
5
What are the potential impacts of CVE-2010-4717?
The potential impacts of CVE-2010-4717 include unauthorized access, data corruption, or complete system compromise.