CVE-2004-2579
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
03/04/2025
Description
ACLCHECK module in Novell iChain 2.3 allows attackers to bypass access control rules of an unspecified component via an unspecified attack vector involving a string that contains escape sequences represented with "overlong UTF-8 encoding."
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:novell:ichain:2.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/12366
- http://securitytracker.com/id?1011074=
- http://support.novell.com/cgi-bin/search/searchtid.cgi?2972080_htm=
- http://www.osvdb.org/9266
- http://www.securityfocus.com/bid/11061
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17132
- http://secunia.com/advisories/12366
- http://securitytracker.com/id?1011074=
- http://support.novell.com/cgi-bin/search/searchtid.cgi?2972080_htm=
- http://www.osvdb.org/9266
- http://www.securityfocus.com/bid/11061
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17132



