Vulnerability Name:

CVE-2008-0935 (CCN-40768)

Assigned:2008-02-15
Published:2008-02-15
Updated:2011-03-08
Summary:Stack-based buffer overflow in the Novell iPrint Control ActiveX control in ienipp.ocx in Novell iPrint Client before 4.34 allows remote attackers to execute arbitrary code via a long argument to the ExecuteRequest method.
CVSS v3 Severity:10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
8.3 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): 
Access Complexity (AC): 
Authentication (Au): 
Impact Metrics:Confidentiality (C): 
Integrity (I): 
Availibility (A): 
9.3 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
7.7 High (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): 
Access Complexity (AC): 
Athentication (Au): 
Impact Metrics:Confidentiality (C): 
Integrity (I): 
Availibility (A): 
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2008-0935

Source: CCN
Type: Novell: Downloads Web page
Novell iPrint Client for Windows 4.34

Source: CONFIRM
Type: Patch
http://download.novell.com/Download?buildid=prBBH4JpImA~

Source: CCN
Type: SA27994
Novell iPrint Client iPrint Control "ExecuteRequest()" Buffer Overflow

Source: SECUNIA
Type: Patch, Vendor Advisory
27994

Source: CCN
Type: SECTRACK ID: 1019489
Novell iPrint Buffer Overflow in 'ienipp.ocx' ActiveX Control Lets Remote Users Execute Arbitrary Code

Source: CCN
Type: US-CERT VU#145313
Novell iPrint Client ActiveX control stack buffer overflows

Source: BID
Type: UNKNOWN
27939

Source: CCN
Type: BID-27939
Novell iPrint Client 'ienipp.ocx' ActiveX Control Buffer Overflow Vulnerability

Source: SECTRACK
Type: Patch
1019489

Source: VUPEN
Type: UNKNOWN
ADV-2008-0639

Source: XF
Type: UNKNOWN
novell-iprint-activex-bo(40768)

Source: CCN
Type: Rapid7 Vulnerability and Exploit Database [02-22-2008]
Novell iPrint Client ActiveX Control ExecuteRequest Buffer Overflow

Vulnerable Configuration:Configuration 1:
  • cpe:/a:novell:iprint:*:*:*:*:*:*:*:* (Version <= 4.32)
  • OR cpe:/a:novell:iprint_client:4.26:*:*:*:*:*:*:*
  • OR cpe:/a:novell:iprint_client:4.32:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:novell:iprint_client:4.26:*:*:*:*:*:*:*
  • OR cpe:/a:novell:iprint_client:4.32:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Vulnerability Name:

    CVE-2008-0935 (CCN-46051)

    Assigned:2008-09-03
    Published:2008-09-03
    Updated:2008-09-03
    Summary:The Novell iPrint ActiveX control (ienipp.ocx) is vulnerable to multiple buffer overflows. By persuading a victim to visit a specially-crafted Web page that uses one of several vulnerable methods, a remote attacker could overlow a buffer and execute aribtrary code on the system with the privileges of the user or cause the victim's browser to crash.
    CVSS v3 Severity:10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
    Exploitability Metrics:Attack Vector (AV): Network
    Attack Complexity (AC): Low
    Privileges Required (PR): None
    User Interaction (UI): None
    Scope:Scope (S): Changed
    Impact Metrics:Confidentiality (C): High
    Integrity (I): High
    Availibility (A): High
    CVSS v2 Severity:10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C)
    7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
    Exploitability Metrics:Access Vector (AV): 
    Access Complexity (AC): 
    Authentication (Au): 
    Impact Metrics:Confidentiality (C): 
    Integrity (I): 
    Availibility (A): 
    9.3 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
    6.9 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
    Exploitability Metrics:Access Vector (AV): 
    Access Complexity (AC): 
    Athentication (Au): 
    Impact Metrics:Confidentiality (C): 
    Integrity (I): 
    Availibility (A): 
    Vulnerability Consequences:Gain Access
    References:Source: MITRE
    Type: CNA
    CVE-2008-0935

    Source: MITRE
    Type: CNA
    CVE-2008-2431

    Source: MITRE
    Type: CNA
    CVE-2008-2436

    Source: CCN
    Type: IBM Internet Security Systems X-Force Database
    Novell iPrint ActiveX control GetDriverFile() buffer overflow

    Source: XF
    Type: UNKNOWN
    novell-iprint-multiple-bo(46051)

    Vulnerable Configuration:Configuration CCN 1:
  • cpe:/a:novell:iprint_client:4.35:*:*:*:*:*:*:*
  • OR cpe:/a:novell:iprint_client:4.36:*:*:*:*:*:*:*
  • OR cpe:/a:novell:iprint_client:4.26:*:*:*:*:*:*:*
  • OR cpe:/a:novell:iprint_client:4.32:*:*:*:*:*:*:*
  • OR cpe:/a:novell:iprint_client:5.06:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    novell iprint *
    novell iprint client 4.26
    novell iprint client 4.32
    novell iprint client 4.26
    novell iprint client 4.32
    novell iprint client 4.35
    novell iprint client 4.36
    novell iprint client 4.26
    novell iprint client 4.32
    novell iprint client 5.06