CVE-2018-20033
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A Remote Code Execution vulnerability in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier could allow a remote attacker to corrupt the memory by allocating / deallocating memory, loading lmgrd or the vendor daemon and causing the heartbeat between lmgrd and the vendor daemon to stop. This would force the vendor daemon to shut down. No exploit of this vulnerability has been demonstrated.
Una vulnerabilidad de ejecución remota de código en los componentes de lmgrd y del demonio del fabricante en FlexNet Publisher, en versiones 11.16.1.0 y anteriores, podría permitir que un atacante remoto corrompa la memoria asignando/desasignando memoria, cargando lmgrd o el demonio del fabricante y provocando que el latido entre lmgrd y el demonio del fabricante se detenga. Esto forzaría el cierre del demonio del fabricante. No se han demostrado explotaciones de esta vulnerabilidad.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-12-10 CVE Reserved
- 2019-02-25 CVE Published
- 2024-02-08 EPSS Updated
- 2024-09-17 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-770: Allocation of Resources Without Limits or Throttling
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/109155 | Broken Link |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.oracle.com/security-alerts/cpuoct2021.html | 2022-04-18 |
URL | Date | SRC |
---|---|---|
https://secuniaresearch.flexerasoftware.com/advisories/85979 | 2022-04-18 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Flexera Search vendor "Flexera" | Flexnet Publisher Search vendor "Flexera" for product "Flexnet Publisher" | <= 11.16.1.0 Search vendor "Flexera" for product "Flexnet Publisher" and version " <= 11.16.1.0" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Communications Lsms Search vendor "Oracle" for product "Communications Lsms" | >= 13.1 <= 13.4 Search vendor "Oracle" for product "Communications Lsms" and version " >= 13.1 <= 13.4" | - |
Affected
|