[VulnWatch] CIRT.DK Advisory - SafeNet Inc Sentinel License Manager 7.2.0.2 Buffer Overflow

From: CIRT.DK Mailinglists (mailinglists@private)
Date: Mon Mar 07 2005 - 10:00:05 PST


The security flaw
When sending a large amount of data to the SentinelLM service, it will
result in a buffer overflow 
where the Extended Instruction Pointer are overwritten, allowing arbitrary
code being run on the server, 
with the rights of the service.

About SafeNet inc.
SafeNet provides complete security utilizing its encryption technologies to
protect communications, 
intellectual property and digital identities, and offers a full spectrum of
products including hardware, 
software, and chips. 

About Sentinel License Manager
Sentinel LM is a software-based license management application allowing
application developers 
to implement multiple pre-built license models with a single software
development integration effort. 

Read the entire CIRT-30-advisory at http://www.cirt.dk 



This archive was generated by hypermail 2.1.3 : Mon Mar 07 2005 - 11:05:51 PST