Vulnerability Name:

CVE-2005-2852 (CCN-22078)

Assigned:2005-08-31
Published:2005-08-31
Updated:2008-09-05
Summary:Unknown vulnerability in CIFS.NLM in Novell Netware 6.5 SP2 and SP3, 5.1, and 6.0 allows remote attackers to cause a denial of service (ABEND) via an incorrect password length, as exploited by the "worm.rbot.ccc" worm.
CVSS v3 Severity:5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
5.0 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-Other
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2005-2852

Source: CCN
Type: Novell Technical Information Document TID2971821
Update to CIFS on Netware 6.5 SP3 - TID2971821

Source: CONFIRM
Type: Patch, Vendor Advisory
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971821.htm

Source: CCN
Type: Novell Technical Information Document TID2971822
CIFS update for NW 5.1 and 6.0 - TID2971822

Source: CONFIRM
Type: Patch, Vendor Advisory
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971822.htm

Source: CCN
Type: Novell Technical Information Document TID2971832
Update to CIFS on Netware 6.5 SP2 - TID2971832

Source: CONFIRM
Type: Patch, Vendor Advisory
http://support.novell.com/cgi-bin/search/searchtid.cgi?/2971832.htm

Source: CCN
Type: OSVDB ID: 12790
Novell NetWare Unspecified CIFS.NLM Remote Overflow

Source: CCN
Type: OSVDB ID: 19086
Novell NetWare CIFS Unspecified Remote DoS

Source: CCN
Type: BID-14701
Novell NetWare CIFS.NLM Denial of Service Vulnerability

Source: XF
Type: UNKNOWN
novell-netware-cifs-dos(22078)

Source: CCN
Type: Rapid7 Vulnerability and Exploit Database [01-21-2007]
Novell NetWare LSASS CIFS.NLM Driver Stack Buffer Overflow

Vulnerable Configuration:Configuration 1:
  • cpe:/o:novell:netware:5.1:*:*:*:*:*:*:*
  • OR cpe:/o:novell:netware:6.0:*:*:*:*:*:*:*
  • OR cpe:/o:novell:netware:6.5:sp2:*:*:*:*:*:*
  • OR cpe:/o:novell:netware:6.5:sp3:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/o:novell:netware:5.1:*:*:*:*:*:*:*
  • OR cpe:/o:novell:netware:6.0:*:*:*:*:*:*:*
  • OR cpe:/a:novell:netware:6.5:sp2:*:*:*:*:*:*
  • OR cpe:/a:novell:netware:6.5:sp3:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    novell netware 5.1
    novell netware 6.0
    novell netware 6.5 sp2
    novell netware 6.5 sp3
    novell netware 5.1
    novell netware 6.0
    novell netware 6.5 sp2
    novell netware 6.5 sp3