CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:L/Au:N/C:N/I:N/A:C
AI Score
Confidence
High
EPSS
Percentile
95.5%
Novell Netware 6.5 SP8 allows remote attackers to cause a denial of service (NULL pointer dereference, memory consumption, ABEND, and crash) via a large number of malformed or AFP requests that are not properly handled by (1) the CIFS functionality in CIFS.nlm Semantic Agent (Build 163 MP) 3.27 or (2) the AFP functionality in AFPTCP.nlm Build 163 SP 3.27. NOTE: some of these details are obtained from third party information.
protekresearch.blogspot.com/2010/01/prl-cifsnlm-memory-consumption-denial.html
secunia.com/advisories/38114
www.exploit-db.com/exploits/11009
www.securityfocus.com/archive/1/508731/100/0/threaded
www.securityfocus.com/bid/37616
www.securitytracker.com/id?1023400
www.vupen.com/english/advisories/2010/0041
exchange.xforce.ibmcloud.com/vulnerabilities/55389