CVE-2010-4328

Novell iPrint Open Enterprise Server SP2-SP3 - Remote Code Execution via LPR Opcode Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2010-4328. PoCs published by Francis Provencher.

AI-analyzed exploit summary This Perl script exploits CVE-2010-4328 by sending a malformed packet to a vulnerable LPD (Line Printer Daemon) service, causing a denial-of-service (DoS) condition. The exploit sends a long string of 'A' characters followed by 'DCBA' to trigger the vulnerability.

Description

Multiple stack-based buffer overflows in opt/novell/iprint/bin/ipsmd in Novell iPrint for Linux Open Enterprise Server 2 SP2 and SP3 allow remote attackers to execute arbitrary code via unspecified LPR opcodes.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Francis Provencher · perldoslinux
https://www.exploit-db.com/exploits/16192

This Perl script exploits CVE-2010-4328 by sending a malformed packet to a vulnerable LPD (Line Printer Daemon) service, causing a denial-of-service (DoS) condition. The exploit sends a long string of 'A' characters followed by 'DCBA' to trigger the vulnerability.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: LPD (Line Printer Daemon) service
No auth needed
Prerequisites: Network access to the target LPD service on port 515
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/70852
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43281
Various Sources x_refsource_confirm
http://download.novell.com/Download?buildid=KloKR_CmrBs~
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1025074
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/8096
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/516506/100/0/threaded
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/0353
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/46309
Third Party Advisory x_refsource_misc
http://www.zerodayinitiative.com/advisories/ZDI-11-087

Scores

EPSS 0.5909
EPSS Percentile 98.3%

Details

CWE
CWE-119
Status published
Products (1)
novell/iprint_open_enterprise_server 2 sp2 (2 CPE variants)
Published Feb 19, 2011
Tracked Since Feb 18, 2026