HTTP RULE(RULE ID:335902)

Rule General Information
Release Date: 2021-12-20
Rule Name: Novell iPrint Client ActiveX Control Buffer Overflow Vulnerability (CVE-2008-0935)
Severity: Critical
CVE ID: CVE-2008-0935
Rule Protection Details
Description: Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a long argument to the ExecuteRequest method.
Impact: A buffer overflow vulnerability can be triggered by an attacker in the context of the vulnerable product. Further attacks includes arbitrary code execution and denial of service.
Affected OS: Windows, Linux, Others
Reference: SecurityFocusBID:27939
http://download.novell.com/Download?buildid=prBBH4JpImA~
SecurityTrackerID:1019489
http://www.vupen.com/english/advisories/2008/0639
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
http://download.novell.com/Download?buildid=prBBH4JpImA~