CVE-2007-0444Improper Restriction of Operations within the Bounds of a Memory Buffer in Solutions Corp Dapcnfsd.dll

Severity
7.5HIGHNVD
CNA7.2
EPSS
2.5%
top 14.77%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 31
Latest updateMay 1

Description

Buffer overflow in the EnumPrintersA function in dapcnfsd.dll 0.6.4.0 in Shaffer Solutions (SSC) DiskAccess NFS Client allows remote attackers to execute arbitrary code via a long argument, an issue similar to CVE-2006-5854 and CVE-2007-0444.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages8 packages

🔴Vulnerability Details

3
GHSA
GHSA-hhr4-753f-fpc5: Stack-based buffer overflow in the print provider library (cpprov2022-05-01
GHSA
GHSA-q297-rgwf-h4xj: Buffer overflow in the EnumPrintersA function in dapcnfsd2022-05-01
CVEList
CVE-2007-0444: Stack-based buffer overflow in the print provider library (cpprov2007-01-24

📋Vendor Advisories

1
Citrix
Citrix Security Bulletin CTX111686