APP: Novell ZENworks Configuration Management Preboot Policy Service Buffer Overflow

This signature detects attempts to exploit a known vulnerability against Novell. A successful exploit can lead to buffer overflow and remote code execution.

Extended Description

Stack-based buffer overflow in the logging functionality in the Preboot Policy service in Novell ZENworks Configuration Management (ZCM) allows remote attackers to execute arbitrary code via unspecified vectors.

Affected Products

Novell zenworks_configuration_management

References

CVE: CVE-2015-0786

Short Name
APP:NOVELL:PREBOOT-POLICY-BO
Severity
Major
Recommended
True
Recommended Action
Drop
Category
APP
Keywords
Buffer CVE-2015-0786 Configuration Management Novell Overflow Policy Preboot Service ZENworks
Release Date
06/09/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3337
Port
UDP/1024-65535
False Positive
Unknown
Vendors

Novell

CVSS Score

10.0

Found a potential security threat?