Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.50, allows remote attackers to execute arbitrary code via malformed ASN.1 streams in V2C and similar input files.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HGemalto Sentinel Ldk Rte
APPGemalto2.103.07.17.50
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
RCEMemory
CWE
References
Related vulnerabilities
CVE-2017-11497CRITICAL9.8PL ✓same product
Stack buffer overflow w Gemalto Sentinel LDK — RCE przez złośliwy pakiet językowy
CVE-2018-6304HIGH7.5same product
Stack overflow in custom XML-parser in Gemalto's Sentinel LDK RTE version before 7.65 leads to remote denial o...
CVE-2018-6305HIGH7.5same product
Denial of service in Gemalto's Sentinel LDK RTE version before 7.65
CVE-2017-11498HIGH7.5same product
Buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to S...
CVE-2018-8900MEDIUM6.1same product
The License Manager service of HASP SRM, Sentinel HASP and Sentinel LDK products prior to Sentinel LDK RTE 7.8...