Multiple stack-based buffer overflows in the Reprise License Manager service in Borland AccuRev allow remote attackers to execute arbitrary code via the (1) akey or (2) actserver parameter to the activate_doit function or (3) licfile parameter to the service_startup_doit functionality.
References
Link | Resource |
---|---|
http://www.zerodayinitiative.com/advisories/ZDI-15-416 | Third Party Advisory VDB Entry |
http://www.zerodayinitiative.com/advisories/ZDI-15-414/ | Third Party Advisory VDB Entry |
http://www.zerodayinitiative.com/advisories/ZDI-15-412 | Third Party Advisory VDB Entry |
https://redr2e.com/cve-to-poc-cve-2015-6946/ | Exploit Third Party Advisory |
Configurations
Information
Published : 2015-09-15 11:59
Updated : 2019-06-26 12:19
NVD link : CVE-2015-6946
Mitre link : CVE-2015-6946
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
microfocus
- accurev