First published: Mon Apr 09 2012(Updated: )
Buffer overflow in the Create Attribute function in jclient in Novell iManager 2.7.4 before patch 4 allows remote authenticated users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted EnteredAttrName parameter, a related issue to CVE-2010-1929.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
NetIQ iManager | =2.0.2 | |
NetIQ iManager | =2.0 | |
NetIQ iManager | =1.5 | |
NetIQ iManager | =2.5 | |
NetIQ iManager | =2.7.3 | |
NetIQ iManager | =2.7.0 | |
NetIQ iManager | =2.6.0 | |
NetIQ iManager | <=2.7.4 | |
NetIQ iManager | =2.7.3-ftf4 | |
NetIQ iManager | =2.7.3-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-4188 has been classified as a significant vulnerability due to its potential to cause a denial of service.
To mitigate CVE-2011-4188, update your Novell iManager to version 2.7.4 or apply the relevant patches.
CVE-2011-4188 affects all versions of Novell iManager prior to 2.7.4, including versions 1.5, 2.0, 2.5, 2.6.0, and 2.7.0.
Exploitation of CVE-2011-4188 can lead to application crashes and may cause unspecified other impacts.
The vulnerability in CVE-2011-4188 is related to a crafted EnteredAttrName parameter in the Create Attribute function.