- Description
- Integer overflow in ds.dlm, as used by dhost.exe, in Novell eDirectory 8.7.3.10 before 8.7.3 SP10b and 8.8 before 8.8.2 ftf2 allows remote attackers to execute arbitrary code via unspecified vectors that trigger a stack-based buffer overflow, related to "flawed arithmetic."
- Source
- cve@mitre.org
- NVD status
- Modified
CVSS 2.0
- Type
- Primary
- Base score
- 10
- Impact score
- 10
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:C/I:C/A:C
- nvd@nist.gov
- CWE-189
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:novell:edirectory:8.7.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "029ADE6D-6761-4196-847C-A0EFB3A06341"
},
{
"criteria": "cpe:2.3:a:novell:edirectory:8.8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D7548D05-AD2B-46C3-9036-366585FFCB48"
}
],
"operator": "OR"
}
]
}
]