CVE-2006-4517

Novell iManager 2.5 and 2.0.2 allows remote attackers to cause a denial of service (crash) in the Tomcat server via a long TREE parameter in an HTTP POST, which triggers a NULL pointer dereference.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:novell:imanager:*:*:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:1.5:*:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.0:*:*:*:*:*:*:*
cpe:2.3:a:novell:imanager:2.0.2:*:*:*:*:*:*:*

History

21 Nov 2024, 00:16

Type Values Removed Values Added
References () http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=436 - Patch () http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=436 - Patch
References () http://secunia.com/advisories/22657 - Patch, Vendor Advisory () http://secunia.com/advisories/22657 - Patch, Vendor Advisory
References () http://securitytracker.com/id?1017139 - () http://securitytracker.com/id?1017139 -
References () http://www.novell.com/support/search.do?cmd=displayKC&docType=kc&externalId=3885713&sliceId=SAL_Public&dialogID=17090866&stateId=0%200%2017098735 - Patch, Vendor Advisory () http://www.novell.com/support/search.do?cmd=displayKC&docType=kc&externalId=3885713&sliceId=SAL_Public&dialogID=17090866&stateId=0%200%2017098735 - Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/20841 - Patch () http://www.securityfocus.com/bid/20841 - Patch
References () http://www.vupen.com/english/advisories/2006/4292 - Vendor Advisory () http://www.vupen.com/english/advisories/2006/4292 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/29961 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/29961 -

Information

Published : 2006-11-01 15:07

Updated : 2024-11-21 00:16


NVD link : CVE-2006-4517

Mitre link : CVE-2006-4517

CVE.ORG link : CVE-2006-4517


JSON object : View

Products Affected

novell

  • imanager
CWE
CWE-189

Numeric Errors

CWE-399

Resource Management Errors