VulnerabilityModified
CVE-2009-1569
Multiple stack-based buffer overflows in Novell iPrint Client 4.38, 5.30, and possibly other versions before 5.32 allow remote attackers to execute arbitrary code via vectors related to (1) Date and (2) Time.
HIGH 9.3EPSS 37.5%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 37.5%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
Multiple stack-based buffer overflows in Novell iPrint Client 4.38, 5.30, and possibly other versions before 5.32 allow remote attackers to execute arbitrary code via vectors related to (1) Date and (2) Time.
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 37.52% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- novell/iprint
- Source
- PSIRT-CNA@flexerasoftware.com
References
- http://download.novell.com/Download?buildid=29T3EFRky18~Patch
- http://secunia.com/advisories/35004Vendor Advisory
- http://secunia.com/advisories/37169Vendor Advisory
- http://secunia.com/secunia_research/2009-44/Vendor Advisory
- http://www.securityfocus.com/archive/1/508288/100/0/threaded
- http://www.securityfocus.com/bid/37242Patch
- http://www.vupen.com/english/advisories/2009/3429Patch, Vendor Advisory
- http://download.novell.com/Download?buildid=29T3EFRky18~Patch
- http://secunia.com/advisories/35004Vendor Advisory
- http://secunia.com/advisories/37169Vendor Advisory
- http://secunia.com/secunia_research/2009-44/Vendor Advisory
- http://www.securityfocus.com/archive/1/508288/100/0/threaded
- http://www.securityfocus.com/bid/37242Patch
- http://www.vupen.com/english/advisories/2009/3429Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.