CVE-2011-4186

UnknownEPSS 3.59%

Last modified

CVE-2011-4186 is a vulnerability of currently unknown severity. Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a crafted client-file-name parameter in a printer-url, a different vulnerability than CVE-2011-1705.. EPSS estimates a 3.59% chance of exploitation in the next 30 days.

Description

Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a crafted client-file-name parameter in a printer-url, a different vulnerability than CVE-2011-1705.

Metrics

EPSS Probability
3.59%

88.0th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
NovellIprint<= 5.74
NovellIprint4.26
NovellIprint4.27
NovellIprint4.28
NovellIprint4.30
NovellIprint4.32
NovellIprint4.34
NovellIprint4.36
NovellIprint4.38
NovellIprint5.04
NovellIprint5.12
NovellIprint5.20b
NovellIprint5.30
NovellIprint5.32
NovellIprint5.40
NovellIprint5.42
NovellIprint5.44
NovellIprint5.50
NovellIprint5.52
NovellIprint5.56
NovellIprint5.60
NovellIprint5.64
NovellIprint5.68
NovellIprint5.72

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2011-4186?
Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a crafted client-file-name parameter in a printer-url, a different vulnerability than CVE-2011-1705.
How severe is CVE-2011-4186?
Severity scoring for CVE-2011-4186 is pending analysis. The EPSS model estimates a 3.59% probability of exploitation in the next 30 days.
How do I fix CVE-2011-4186?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2011-4186?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST