A vulnerability has been reported in Novell Client, which can be exploited by malicious users to compromise a vulnerable system.
The vulnerability is caused due to an error in Novell NetIdentity Agent within xtagent.exe when handling RPC messages over the "XTIERRPCPIPE" named pipe. This can be exploited to dereference an arbitrary pointer.
Successful exploitation allows execution of arbitrary code, but requires a valid established IPC$ connection.
Solution: Update Novell NetIdentity Client to version 1.2.4, build 1.2.612.
Do you have additional information related to this advisory?
Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this
information to firstname.lastname@example.org