CVE-2011-4187: Buffer Overflow
Published Feb 20, 2012
·Updated
Buffer overflow in the GetDriverSettings function in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a long realm field, a different vulnerability than CVE-2011-3173.
Affected Software
25 affected components
Novell iPrint<=5.74
Novell iPrint=4.26
Novell iPrint=4.27
Novell iPrint=4.28
Novell iPrint=4.30
Novell iPrint=4.32
Novell iPrint=4.34
Novell iPrint=4.36
Novell iPrint=4.38
Novell iPrint=5.04
Novell iPrint=5.12
Novell iPrint=5.20b
Novell iPrint=5.30
Novell iPrint=5.32
Novell iPrint=5.40
Novell iPrint=5.42
Novell iPrint=5.44
Novell iPrint=5.50
Novell iPrint=5.52
Novell iPrint=5.56
Novell iPrint=5.60
Novell iPrint=5.64
Novell iPrint=5.68
Novell iPrint=5.72
Microsoft Windows
Event History
Feb 20, 2012
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Feb 21, 2012
Data Sourced
01:31 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-4187?
CVE-2011-4187 is rated as a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2011-4187?
To fix CVE-2011-4187, upgrade the Novell iPrint Client to version 5.78 or later.
3
Which versions of Novell iPrint are affected by CVE-2011-4187?
CVE-2011-4187 affects Novell iPrint Client versions up to and including 5.74, as well as specific earlier versions.
4
Can CVE-2011-4187 be exploited remotely?
Yes, CVE-2011-4187 can be exploited remotely by attackers through crafted data sent to the affected application.
5
What does CVE-2011-4187 specifically target in Novell iPrint Client?
CVE-2011-4187 specifically targets a buffer overflow in the GetDriverSettings function in nipplib.dll.