APP: Novell ZENworks Configuration Management PreBoot Service Overflow
This signature detects attempts to exploit a known vulnerability in the Novell ZENworks Configuration Management. A successful attack can lead to a buffer overflow and arbitrary remote code execution with elevated privileges. Failed exploit attempts could lead to a denial of service condition.
Extended Description
Novell ZENworks Configuration Management is prone to following vulnerabilities: 1. A stack-based buffer-overflow vulnerability 2. An arbitrary file download vulnerability Exploiting these issues may allow remote attackers to execute arbitrary code or retrieve arbitrary files within the context of the affected application.
Affected Products
Novell zenworks_configuration_management
References
BugTraq: 52659
CVE: CVE-2011-3175
URL: http://www.verisigninc.com/en_US/products-and-services/network-intelligence-availability/idefense/public-vulnerability-reports/articles/index.xhtml?id=973 http://www.verisigninc.com/en_US/products-and-services/network-intelligence-availability/idefense/public-vulnerability-reports/articles/index.xhtml?id=974 http://support.novell.com/docs/readmes/infodocument/patchbuilder/readme_5127930.html
srx-branch-19.3
vsrx3bsd-19.2
srx-19.4
vsrx3bsd-19.4
srx-branch-19.4
vsrx-19.4
vsrx-19.2
srx-19.3
srx-branch-12.3
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx-12.3
vmx-19.3
srx-12.3
Novell
10.0