CVE-2011-4189: Code Injection
The client in Novell GroupWise 8.0x through 8.02HP3 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via a long e-mail address in an Address Book (aka .NAB) file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4189?
CVE-2011-4189 has a high severity rating due to its potential for remote code execution and denial of service.
How do I fix CVE-2011-4189?
To fix CVE-2011-4189, update your Novell GroupWise client to the latest version provided by Novell.
What versions of Novell GroupWise are affected by CVE-2011-4189?
CVE-2011-4189 affects Novell GroupWise versions 8.0, 8.0.1, 8.0.2, 8.0-hp1, 8.0-hp2, and 8.0-sp1.
What type of vulnerability is CVE-2011-4189?
CVE-2011-4189 is a vulnerability that allows remote attackers to execute arbitrary code or cause a denial of service through malformed email addresses.
Can CVE-2011-4189 lead to data breaches?
Yes, CVE-2011-4189 can potentially lead to data breaches due to unauthorized code execution by attackers.