[VulnWatch] CIRT.DK Advisory - SafeNet Inc Sentinel License Manager 7.2.0.2 Buffer Overflow

From: CIRT.DK Mailinglists (mailinglists_at_cirt.dk)
Date: 03/07/05

  • Next message: Cesar: "[VulnWatch] - Argeniss - Oracle Database Server Directory transversal"
    To: "'Vulnwatch@Vulnwatch. Org'" <vulnwatch@vulnwatch.org>
    Date: Mon, 7 Mar 2005 19:00:05 +0100
    
    

    The security flaw
    When sending a large amount of data to the SentinelLM service, it will
    result in a buffer overflow
    where the Extended Instruction Pointer are overwritten, allowing arbitrary
    code being run on the server,
    with the rights of the service.

    About SafeNet inc.
    SafeNet provides complete security utilizing its encryption technologies to
    protect communications,
    intellectual property and digital identities, and offers a full spectrum of
    products including hardware,
    software, and chips.

    About Sentinel License Manager
    Sentinel LM is a software-based license management application allowing
    application developers
    to implement multiple pre-built license models with a single software
    development integration effort.

    Read the entire CIRT-30-advisory at http://www.cirt.dk


  • Next message: Cesar: "[VulnWatch] - Argeniss - Oracle Database Server Directory transversal"

    Relevant Pages