CVE ID | |
CVSS SCORE | 10.0, AV:N/AC:L/Au:N/C:C/I:C/A:C |
AFFECTED VENDORS |
Flexera Software |
AFFECTED PRODUCTS |
FlexNet License Server Manager |
VULNERABILITY DETAILS |
The specific flaw exists within lmgrd license server manager. lmgrd listens by default on TCP port 27000. A specially crafted packet sent to the server will cause a stack overflow allowing for remote code execution under the context of the server. |
ADDITIONAL DETAILS |
Flexera Software has issued an update to correct this vulnerability. More details can be found at:
http://www.flexerasoftware.com/pl/13057.htm |
DISCLOSURE TIMELINE |
|
CREDIT | Luigi Auriemma Alexander Gavrun |