First published: Sat Dec 31 2011(Updated: )
Multiple integer overflows in the HTTP server in the Novell XTier framework 3.1.8 allow remote attackers to cause a denial of service (service crash) or possibly execute arbitrary code via crafted header length variables.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell XTier framework | =3.1.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1710 has a moderate severity level due to its potential to cause denial of service and execute arbitrary code.
To fix CVE-2011-1710, it is recommended to upgrade the Novell XTier framework to a patched version that addresses the integer overflow vulnerabilities.
CVE-2011-1710 specifically affects Novell XTier framework version 3.1.8.
Yes, CVE-2011-1710 can be exploited remotely by attackers through crafted header length variables.
Exploiting CVE-2011-1710 can lead to service crashes or potential execution of arbitrary code on the affected system.