Novell.GroupWise.Internet.Agent.RRULE.Parsing.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer overflow vulnerability in Novell GroupWise.
The vulnerability is due to a buffer overflow when parsing an RRULE variable of a VCALENDAR inside an email. An unauthenticated remote attacker could exploit this vulnerability by sending a malicious email to the target.

affected-products-logoAffected Products

Novell Groupwise 8.02
Novell Groupwise 8.01x
Novell Groupwise 8.0 SP2
Novell Groupwise 8.0 SP1
Novell Groupwise 8.0 HP2
Novell Groupwise 8.0 HP1
Novell Groupwise 8.0

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Update to the latest versions:
http://download.novell.com/Download?buildid=04oMMaiI9nI~

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)