CVE-2016-10311: Buffer Overflow
Stack-based buffer overflow in SAP NetWeaver 7.0 through 7.5 allows remote attackers to cause a denial of service () by sending a crafted packet to the SAPSTARTSRV port, aka SAP Security Note 2295238.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10311?
CVE-2016-10311 has a high severity rating due to its potential to cause denial of service for SAP NetWeaver applications.
How do I fix CVE-2016-10311?
To mitigate CVE-2016-10311, apply the latest patches provided by SAP for the affected versions of NetWeaver.
What versions are affected by CVE-2016-10311?
CVE-2016-10311 affects SAP NetWeaver versions 7.0 through 7.5, including various enhancement packages.
What type of attack does CVE-2016-10311 facilitate?
CVE-2016-10311 allows attackers to launch a denial of service attack by sending a crafted packet to the SAPSTARTSRV port.
Is there a workaround for CVE-2016-10311?
While the primary solution is to apply security patches, limiting access to the SAPSTARTSRV port can serve as a temporary workaround.