CVE-2010-4714

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
31/01/2011
Last modified:
11/04/2025

Description

Multiple stack-based buffer overflows in Novell GroupWise before 8.02HP allow remote attackers to execute arbitrary code via a long HTTP Host header to (1) gwpoa.exe in the Post Office Agent, (2) gwmta.exe in the Message Transfer Agent, (3) gwia.exe in the Internet Agent, (4) the WebAccess Agent, or (5) the Monitor Agent.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:novell:groupwise:*:*:*:*:*:*:*:* 8.0.2 (including)
cpe:2.3:a:novell:groupwise:4.1:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:4.1a:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:5.0:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:5.1:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:5.2:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:5.5:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:5.5:*:enhancement_pack:*:*:*:*:*
cpe:2.3:a:novell:groupwise:5.57e:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:6.0:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:6.0:sp1:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:6.0:sp5:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:6.0.1:sp1:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:6.5:*:*:*:*:*:*:*
cpe:2.3:a:novell:groupwise:6.5:sp1:*:*:*:*:*:*