.:[ packet storm ]:.
                           
honesty is the best policy
honesty is the best policy

 ///  File Name:secunia-iprintboundary.txt
Description:
Secunia Research has discovered a vulnerability in Novell iPrint Client, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to a boundary error within the "IppCreateServerRef()" function in nipplib.dll. This can be exploited to cause a heap-based buffer overflow by passing an overly long, specially crafted string as argument to either "GetPrinterURLList()", "GetPrinterURLList2()", or "GetFileList2()" as provided by the Novell iPrint ActiveX control (ienipp.ocx). Successful exploitation may allow execution of arbitrary code.
Author:Carsten Eiram
Homepage:http://secunia.com/
File Size:4771
Related CVE(s):CVE-2008-2436
Last Modified:Sep 3 17:14:00 2008
MD5 Checksum:5f0735fc1bc5e620690fa1fac9a4c647

 .:. Back