Novell Home

CVE-2008-2097

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2008-2097 at MITRE

Description

Buffer overflow in the openwsman management service in VMware ESXi 3.5 and ESX 3.5 allows remote authenticated users to gain privileges via an "invalid Content-Length."

NVD CVSS v2 Base Score: 9.0 (AV:N/AC:L/Au:S/C:C/I:C/A:C)

Novell/SUSE information

Novell Bugzilla entry: 388567

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 10.3
  • openwsman >= 1.2.0-14.2
  • openwsman-client >= 1.2.0-14.2
  • openwsman-devel >= 1.2.0-14.2
  • openwsman-server >= 1.2.0-14.2

© 2012 Novell