CVE-2024-2658: Flexera Software FlexNet Publisher Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
A misconfiguration in lmadmin.exe of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0) allows the OpenSSL configuration file to load from a non-existent directory. An unauthorized, locally authenticated user with low privileges can potentially create the directory and load a specially crafted openssl.conf file leading to the execution of a malicious DLL (Dynamic-Link Library) with elevated privileges.
Other sources
This vulnerability allows local attackers to escalate privileges on affected installations of Flexera Software FlexNet Publisher. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the configuration of OpenSSL. The process loads an OpenSSL configuration file from an unsecured location. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of the service account.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-2658?
CVE-2024-2658 has been rated as a medium severity vulnerability due to its potential for local privilege escalation.
How do I fix CVE-2024-2658?
To fix CVE-2024-2658, update FlexNet Publisher to version 2024 R1 (11.19.6.0) or later.
Who is affected by CVE-2024-2658?
CVE-2024-2658 affects users of FlexNet Publisher versions prior to 2024 R1 (11.19.6.0).
What type of vulnerability is CVE-2024-2658?
CVE-2024-2658 is a local privilege escalation vulnerability due to a misconfiguration in lmadmin.exe.
Can CVE-2024-2658 be exploited remotely?
CVE-2024-2658 cannot be exploited remotely as it requires local authentication and low privileges.