Lucene search

K
cve[email protected]CVE-2011-3827
HistorySep 19, 2012 - 10:57 a.m.

CVE-2011-3827

2012-09-1910:57:01
CWE-119
web.nvd.nist.gov
100
cve-2011-3827
icalendar
gwwww1.dll
groupwise internet agent
gwia
novell groupwise 8.0
denial of service
out-of-bounds read
daemon crash
nvd

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.5 Medium

AI Score

Confidence

Low

0.672 Medium

EPSS

Percentile

98.0%

The iCalendar component in gwwww1.dll in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before Support Pack 3 allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted date-time string in a .ics attachment.

Affected configurations

NVD
Node
novellgroupwiseRange8.00hp3
OR
novellgroupwiseMatch8.0
OR
novellgroupwiseMatch8.00hp1
OR
novellgroupwiseMatch8.00hp2

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

6.5 Medium

AI Score

Confidence

Low

0.672 Medium

EPSS

Percentile

98.0%