CORE IMPACT v12 - Exploits Update (Wed Dec 28 2011)
Novell iPrint Client nipplib GetDriverSettings Buffer Overflow Exploit
Exploits/Client Side [Windows]
Wed Dec 28 2011
The flaw exists within the nipplib.dll component. When handling the exposed method GetDriverSettings the application assembles a string for logging consisting of the hostname/port provided as a parameter. When building this message the process will blindly copy user supplied data into a fixed-length buffer on the stack.
Exploits Vulnerabiltiy: CVE-2011-3173











