Heap-based buffer overflow in NFRAgent.exe in Novell File Reporter 1.0.2 allows remote attackers to execute arbitrary code via a large number of VOL elements in an SRS record.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/273371 | US Government Resource |
https://community.rapid7.com/community/metasploit/blog/2012/11/16/nfr-agent-buffer-vulnerabilites-cve-2012-4959 | Exploit |
http://osvdb.org/87574 |
Configurations
Information
Published : 2012-11-18 11:55
Updated : 2013-05-02 20:25
NVD link : CVE-2012-4956
Mitre link : CVE-2012-4956
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
novell
- file_reporter