VYPR
Unrated severityNVD Advisory· Published Feb 25, 2011· Updated Apr 29, 2026

CVE-2010-4227

CVE-2010-4227

Description

The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of service (abend) or execute arbitrary code via a crafted, signed value in a NFS RPC request to port UDP 1234, leading to a stack-based buffer overflow.

Affected products

8
  • Novell/Netware8 versions
    cpe:2.3:a:novell:netware:*:sp7:*:*:*:*:*:*+ 7 more
    • cpe:2.3:a:novell:netware:*:sp7:*:*:*:*:*:*range: <=6.5
    • cpe:2.3:a:novell:netware:6.5:*:*:*:*:*:*:*
    • cpe:2.3:a:novell:netware:6.5:sp1:*:*:*:*:*:*
    • cpe:2.3:a:novell:netware:6.5:sp2:*:*:*:*:*:*
    • cpe:2.3:a:novell:netware:6.5:sp3:*:*:*:*:*:*
    • cpe:2.3:a:novell:netware:6.5:sp4:*:*:*:*:*:*
    • cpe:2.3:a:novell:netware:6.5:sp5:*:*:*:*:*:*
    • cpe:2.3:a:novell:netware:6.5:sp6:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

11

News mentions

0

No linked articles in our index yet.