PT-2017-3349 · Gemalto · Sentinel Ldk Rte+2

Published

2017-10-02

·

Updated

2018-05-11

·

CVE-2017-12820

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Sentinel LDK RTE versions prior to 7.55 Gemalto's HASP SRM and Sentinel HASP (affected versions not specified)
Description The issue is caused by an arbitrary memory read from a controlled memory pointer, which can lead to a remote denial of service. It is also described as a buffer overflow in memory, allowing a remote attacker to cause a denial of service.
Recommendations For Sentinel LDK RTE versions prior to 7.55, update to version 7.55 or later to resolve the issue. For Gemalto's HASP SRM and Sentinel HASP, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-00119
CVE-2017-12820

Affected Products

Hasp Srm
Sentinel Hasp
Sentinel Ldk Rte