Oval Definition:oval:org.opensuse.security:def:20053185
Revision Date:2015-11-16Version:1
Title:CVE-2005-3185
Description:
Stack-based buffer overflow in the ntlm_output function in http-ntlm.c for (1) wget 1.10, (2) curl 7.13.2, and (3) libcurl 7.13.2, and other products that use libcurl, when NTLM authentication is enabled, allows remote servers to execute arbitrary code via a long NTLM username.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2005-3185
Platform(s):Novell Linux Desktop 9 for x86
Novell Linux Desktop 9 for x86_64
Open Enterprise Server
SUSE CORE 9 for AMD64 and Intel EM64T
SUSE CORE 9 for IBM POWER
SUSE CORE 9 for IBM S/390 31bit
SUSE CORE 9 for IBM zSeries 64bit
SUSE CORE 9 for Itanium Processor Family
SUSE CORE 9 for x86
SUSE LINUX 10.0
SUSE LINUX 9.1 for IA32
SUSE LINUX 9.1 for x86-64
SUSE LINUX 9.2
SUSE LINUX 9.3
Product(s):
Definition Synopsis
  • Release Information
  • suse100 is installed
  • compat-curl2-32bit less than 7.11.0-7.2
  • OR compat-curl2-64bit less than 7.11.0-7.2
  • OR compat-curl2 less than 7.11.0-7.2
  • OR
  • suse92 is installed
  • compat-curl2-32bit less than 9.2-200510171251
  • OR compat-curl2 less than 7.11.0-4.4
  • OR
  • suse93 is installed
  • compat-curl2-32bit less than 9.3-7.1
  • OR compat-curl2 less than 7.11.0-6.2
  • OR Package Information
  • sles9-nld is installed
  • AND
  • curl-devel less than 7.11.0-39.9
  • OR curl less than 7.11.0-39.9
  • OR Package Information
  • suse100 is installed
  • curl-32bit less than 7.14.0-2.2
  • OR curl-64bit less than 7.14.0-2.2
  • OR curl less than 7.14.0-2.2
  • OR
  • suse91 is installed
  • curl-32bit less than 9.1-200510171252
  • OR curl less than 7.11.0-39.9
  • OR
  • suse92 is installed
  • AND curl less than 7.12.0-2.4
  • OR
  • suse93 is installed
  • curl-32bit less than 9.3-7.1
  • OR curl less than 7.13.0-5.2
  • OR Package Information
  • sles9-nld is installed
  • AND curl less than 7.11.0-39.9
  • OR Package Information
  • suse100 is installed
  • AND wget less than 1.10.1-2.2
  • OR
  • suse93 is installed
  • AND wget less than 1.10-1.3
  • BACK