CVE-2009-4643

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
15/02/2010
Last modified:
11/04/2025

Description

Stack-based buffer overflow in dsInstallerService.dll in the Juniper Installer Service, as used in Juniper Odyssey Access Client 4.72.11421.0 and other products, allows remote attackers to execute arbitrary code via a long string in a malformed DSSETUPSERVICE_CMD_UNINSTALL command to the NeoterisSetupService named pipe.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:juniper:odyssey_access_client:4.72.11421.0:*:*:*:*:*:*:*