Vissza a www.andrews.hu-ra

    [guru] Novell biztonsagi frissitesek


    DATE: Tue, 05 Jan 2010 14:12:41 +0100
    Stack buffer overflow hibákat találtak a Novell iPrint kliensben, a
    hiba kihasználásához az áldozatnak elég a támadó weblapját meglátogatnia.
    
    
    --- Begin Message ---
    ====================================================================== 
    
                         Secunia Research 08/12/2009
    
      - Novell iPrint Client "target-frame" Parameter Buffer Overflow -
    
    ====================================================================== 
    Table of Contents
    
    Affected Software....................................................1
    Severity.............................................................2
    Vendor's Description of Software.....................................3
    Description of Vulnerability.........................................4
    Solution.............................................................5
    Time Table...........................................................6
    Credits..............................................................7
    References...........................................................8
    About Secunia........................................................9
    Verification........................................................10
    
    ====================================================================== 
    1) Affected Software 
    
    * Novell iPrint Client 5.30
    
    NOTE: Other versions may also be affected.
    
    ====================================================================== 
    2) Severity 
    
    Rating: Highly critical
    Impact: System compromise
    Where:  Remote
    
    ====================================================================== 
    3) Vendor's Description of Software 
    
    "Novell iPrint extends print services securely across multiple 
    networks and operating systems. Using proven Internet technologies, 
    iPrint transforms your Novell Distributed Print Services? (NDPS®) 
    printers into Net-enabled printers, making all your printing resources
    instantly accessible with a Web browser and a few mouse clicks".
    
    Product Link:
    http://www.novell.com/products/openenterpriseserver/iprint.html
    
    ====================================================================== 
    4) Description of Vulnerability
    
    Secunia Research has discovered a vulnerability in Novell iPrint 
    Client, which can be exploited by malicious people to compromise a
    user's system.
    
    The vulnerability is caused by a boundary error in ienipp.ocx when 
    parsing the "target-frame" parameter and can be exploited to cause a
    stack-based buffer overflow via an overly long parameter value.
    
    Successful exploitation allows execution of arbitrary code when a user
    e.g. views a malicious web page.
    
    ====================================================================== 
    5) Solution 
    
    Update to version 5.32.
    
    ====================================================================== 
    6) Time Table 
    
    02/11/2009 - Vendor notified.
    03/11/2009 - Vendor response.
    08/12/2009 - Public disclosure.
    
    ====================================================================== 
    7) Credits 
    
    Discovered by Carsten Eiram, Secunia Research.
    
    ====================================================================== 
    8) References
    
    The Common Vulnerabilities and Exposures (CVE) project has assigned 
    CVE-2009-1568 for the vulnerability.
    
    ====================================================================== 
    9) About Secunia
    
    Secunia offers vulnerability management solutions to corporate
    customers with verified and reliable vulnerability intelligence
    relevant to their specific system configuration:
    
    http://secunia.com/advisories/business_solutions/
    
    Secunia also provides a publicly accessible and comprehensive advisory
    database as a service to the security community and private 
    individuals, who are interested in or concerned about IT-security.
    
    http://secunia.com/advisories/
    
    Secunia believes that it is important to support the community and to
    do active vulnerability research in order to aid improving the 
    security and reliability of software in general:
    
    http://secunia.com/secunia_research/
    
    Secunia regularly hires new skilled team members. Check the URL below
    to see currently vacant positions:
    
    http://secunia.com/corporate/jobs/
    
    Secunia offers a FREE mailing list called Secunia Security Advisories:
    
    http://secunia.com/advisories/mailing_lists/
    
    ====================================================================== 
    10) Verification 
    
    Please verify this advisory by visiting the Secunia website:
    http://secunia.com/secunia_research/2009-40/
    
    Complete list of vulnerability reports published by Secunia Research:
    http://secunia.com/secunia_research/
    
    ======================================================================
    
    
    
    

    --- End Message ---
    --- Begin Message ---
    ====================================================================== 
    
                         Secunia Research 08/12/2009
    
        - Novell iPrint Client Date/Time Parsing Buffer Overflow -
    
    ====================================================================== 
    Table of Contents
    
    Affected Software....................................................1
    Severity.............................................................2
    Vendor's Description of Software.....................................3
    Description of Vulnerability.........................................4
    Solution.............................................................5
    Time Table...........................................................6
    Credits..............................................................7
    References...........................................................8
    About Secunia........................................................9
    Verification........................................................10
    
    ====================================================================== 
    1) Affected Software 
    
    * Novell iPrint Client 4.38
    * Novell iPrint Client 5.30
    
    NOTE: Other versions may also be affected.
    
    ====================================================================== 
    2) Severity 
    
    Rating: Highly critical
    Impact: System compromise
    Where:  Remote
    
    ====================================================================== 
    3) Vendor's Description of Software 
    
    "Novell iPrint extends print services securely across multiple 
    networks and operating systems. Using proven Internet technologies, 
    iPrint transforms your Novell Distributed Print Services? (NDPS®) 
    printers into Net-enabled printers, making all your printing resources
    instantly accessible with a Web browser and a few mouse clicks".
    
    Product Link:
    http://www.novell.com/products/openenterpriseserver/iprint.html
    
    ====================================================================== 
    4) Description of Vulnerability
    
    Secunia Research has discovered a vulnerability in Novell iPrint 
    Client, which can be exploited by malicious people to compromise a
    user's system.
    
    The vulnerability is caused by a boundary error in the parsing of
    certain time information and can be exploited to cause a stack-based
    buffer overflow via overly long strings passed to certain parameters
    and methods.
    
    Successful exploitation allows execution of arbitrary code when a user
    e.g. views a malicious web page.
    
    ====================================================================== 
    5) Solution 
    
    Update to version 5.32.
    
    ====================================================================== 
    6) Time Table 
    
    04/11/2009 - Vendor notified.
    09/11/2009 - Vendor notified (2nd attempt).
    09/11/2009 - Vendor response.
    08/12/2009 - Public disclosure.
    
    ====================================================================== 
    7) Credits 
    
    Discovered by Carsten Eiram, Secunia Research.
    
    ====================================================================== 
    8) References
    
    The Common Vulnerabilities and Exposures (CVE) project has assigned 
    CVE-2009-1569 for the vulnerability.
    
    ====================================================================== 
    9) About Secunia
    
    Secunia offers vulnerability management solutions to corporate
    customers with verified and reliable vulnerability intelligence
    relevant to their specific system configuration:
    
    http://secunia.com/advisories/business_solutions/
    
    Secunia also provides a publicly accessible and comprehensive advisory
    database as a service to the security community and private 
    individuals, who are interested in or concerned about IT-security.
    
    http://secunia.com/advisories/
    
    Secunia believes that it is important to support the community and to
    do active vulnerability research in order to aid improving the 
    security and reliability of software in general:
    
    http://secunia.com/secunia_research/
    
    Secunia regularly hires new skilled team members. Check the URL below
    to see currently vacant positions:
    
    http://secunia.com/corporate/jobs/
    
    Secunia offers a FREE mailing list called Secunia Security Advisories:
    
    http://secunia.com/advisories/mailing_lists/
    
    ====================================================================== 
    10) Verification 
    
    Please verify this advisory by visiting the Secunia website:
    http://secunia.com/secunia_research/2009-44/
    
    Complete list of vulnerability reports published by Secunia Research:
    http://secunia.com/secunia_research/
    
    ======================================================================
    
    
    
    

    --- End Message ---

    Vissza a www.andrews.hu-ra