CVE-2011-0334: Buffer Overflow
Published Oct 8, 2011
·Updated
Stack-based buffer overflow in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before HP3 allows remote attackers to execute arbitrary code via a long HTTP request for a .css file.
Affected Software
3 affected components
Novell GroupWise=8.0-hp1
Novell GroupWise=8.0
Novell GroupWise=8.0-hp2
Event History
Oct 8, 2011
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-0334?
CVE-2011-0334 has a critical severity level due to the potential for remote code execution.
2
How do I fix CVE-2011-0334?
To fix CVE-2011-0334, it is recommended to upgrade to Novell GroupWise 8.0 HP3 or later.
3
What type of vulnerability is CVE-2011-0334?
CVE-2011-0334 is a stack-based buffer overflow vulnerability.
4
Who is affected by CVE-2011-0334?
Organizations using Novell GroupWise 8.0 before HP3 are susceptible to CVE-2011-0334.
5
Can CVE-2011-0334 be exploited remotely?
Yes, CVE-2011-0334 can be exploited remotely via long HTTP requests.