Skip to main content

Novell iPrint Client Multiple Vulnerabilities

Last Update Date: 8 Jun 2011 14:17 Release Date: 8 Jun 2011 5636 Views

RISK: High Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

Multiple vulnerabilities have been identified in Novell iPrint Client, which could be exploited by remote attackers to compromise a vulnerable system.

  1. A boundary error in nipplib.dll when handling the "uri" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  2. A boundary error in nipplib.dll when handling the "profile-time" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  3. A boundary error in nipplib.dll when handling the "profile-name" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  4. A boundary error in nipplib.dll when handling the "file-date-time" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  5. A boundary error in nipplib.dll when handling the "driver-version" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  6. A boundary error in nipplib.dll when handling the "core-package" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  7. A boundary error in nipplib.dll when handling the "client-file-name" parameter via "printer-url" can be exploited to cause a heap-based buffer overflow.
  8. A boundary error in nipplib.dll when handling the "iprint-client-config-info" parameter via "printer-url" can be exploited to cause a stack-based buffer overflow.
  9. A boundary error in nipplib.dll when handling the "op-printer-list-all-jobs" parameter via "printer-url" can be exploited to cause a stack-based buffer overflow.
  10. A boundary error in nipplib.dll when handling a cookie associated with the "op-printer-list-all-jobs" parameter via "printer-url" can be exploited to cause a stack-based buffer overflow.

Impact

  • Remote Code Execution

System / Technologies affected

  • Novell iPrint Client 5.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 5.64.

Vulnerability Identifier


Source


Related Link