PT-2020-11341 · Flexera · Flexnet Publisher

Published

2020-04-21

·

Updated

2021-07-21

·

CVE-2019-8961

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions FlexNet Publisher lmadmin.exe version 11.16.2
Description A Denial of Service issue related to stack exhaustion has been identified. The message reading function calls itself recursively under certain conditions in the received message, allowing an unauthenticated remote attacker to cause a stack exhaustion condition by repeatedly sending specific messages.
Recommendations For version 11.16.2, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Uncontrolled Recursion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-8961

Affected Products

Flexnet Publisher