This application requires Javascript for optimal performance.

Novell.GroupWise.Messenger.Buffer.Overflow

Release Date

Jul 20, 2011

Severity

high

Impact

System compromise: Remote attackers may be able to gain control of vulnerable systems.

Description

This indicates an attempt to exploit a Stack Based Buffer Overflow vulnerability n Novell GroupWise Messenger Client for Windows.

This vulnerability is caused by the software's inability to properly check the bounds of user supplied data. Remote attackers may exploit this to execute arbitrary code.

Affected Products

Novell GroupWise Messenger 2.0.3
Novell GroupWise Messenger 2.0

Recommended Actions

Update to a non-vulnerable version:
http://support.novell.com

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2008-2703

Reference/s

http://www.frsirt.com/english/advisories/2008/1764 (FrSIRT)
http://www.securityfocus.com/bid/29602 (BugTraq)

Reference: VID-27973