First published: Mon Oct 02 2017(Updated: )
Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.50, allows remote attackers to execute arbitrary code via language packs containing filenames longer than 1024 characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thales Sentinel LDK | =2.10 | |
Thales Sentinel LDK | =3.0 | |
Thales Sentinel LDK | =7.1 | |
Thales Sentinel LDK | =7.50 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11497 is classified as a high severity vulnerability due to its potential to allow remote code execution.
To remediate CVE-2017-11497, upgrade to a version of Gemalto Sentinel LDK that is not affected, such as those released after 7.50.
CVE-2017-11497 affects Gemalto ACC versions from HASP SRM 2.10 to Sentinel LDK 7.50.
Organizations using any affected version of Gemalto Sentinel LDK are vulnerable to CVE-2017-11497.
CVE-2017-11497 is a stack buffer overflow vulnerability that can be exploited through malicious language packs.