|
Family: Denial of Service --> Category: infos
Novell Client srvloc.sys Denial of Service Vulnerability Vulnerability Scan
Vulnerability Scan Summary Checks file versions of srvloc.sys / nwgina.dll
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote Windows host contains a service that is susceptible to a
denial of service attack.
Description :
The file 'srvloc.sys' included with the Novell Client software is
reportedly vulnerable to a denial of service attack when processing
malformed SLP packets to port 427.
Note that it is not currently known whether this involves the TCP or
UDP service or both.
See also :
http://www.nessus.org/u?4e0f1aa2
Solution :
Upgrade to Novell Client 4.91 SP3 or later.
Threat Level:
Low / CVSS Base Score : 2.3
(AV:R/AC:L/Au:NR/C:N/I:N/A:P/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|