Lucene search

K
nvd[email protected]NVD:CVE-2008-3159
HistoryJul 14, 2008 - 6:41 p.m.

CVE-2008-3159

2008-07-1418:41:00
CWE-189
web.nvd.nist.gov
7

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.285

Percentile

96.9%

Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers to execute arbitrary code via unspecified vectors that trigger a stack-based buffer overflow, related to “flawed arithmetic.”

Affected configurations

Nvd
Node
novelledirectoryMatch8.7.3
OR
novelledirectoryMatch8.8
VendorProductVersionCPE
novelledirectory8.7.3cpe:2.3:a:novell:edirectory:8.7.3:*:*:*:*:*:*:*
novelledirectory8.8cpe:2.3:a:novell:edirectory:8.8:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

Low

EPSS

0.285

Percentile

96.9%

Related for NVD:CVE-2008-3159