Short Name |
APP:NOVELL:MESSENGER-OF |
|---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
APP |
Keywords |
novell groupwise messenger |
Release Date |
2006/04/26 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.4+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+ |
This signature detects attempts to exploit a known vulnerability against Novell GroupWise Messenger. Attackers can send a request containing an overly long Accept-Language header, which can cause arbitrary code to be executed on the affected server.
Novell GroupWise Messenger is prone to a remote buffer-overflow vulnerability. The vulnerability affects the Novell Messaging Agent component and arises when the server handles an 'Accept-Language' header containing excessive data. A successful attack may lead to arbitrary code execution in the context of SYSTEM or superuser. Novell GroupWise Messenger 2.0 is vulnerable to this issue.