CVE-2008-5092
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
14/11/2008
Last modified:
09/04/2025
Description
Heap-based buffer overflows in Novell eDirectory HTTP protocol stack (HTTPSTK) before 8.8 SP3 have unknown impact and attack vectors related to the (1) HTTP language header and (2) HTTP content-length header.
Impact
Base Score 2.0
10.00
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:novell:edirectory:*:sp2:windows:*:*:*:*:* | 8.8 (including) | |
cpe:2.3:a:novell:edirectory:8.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.5.12a:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.5.27:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.6.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.1:sp1:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.3:sp1:windows:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.3:sp2:windows:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.3:sp3:windows:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.3:sp4:windows:*:*:*:*:* | ||
cpe:2.3:a:novell:edirectory:8.7.3:sp5:windows:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://www.novell.com/support/viewContent.do?externalId=3426981
- http://www.securityfocus.com/bid/30947
- http://www.securitytracker.com/id?1020786=
- http://www.vupen.com/english/advisories/2008/2462
- http://www.novell.com/support/viewContent.do?externalId=3426981
- http://www.securityfocus.com/bid/30947
- http://www.securitytracker.com/id?1020786=
- http://www.vupen.com/english/advisories/2008/2462