CVE-2016-10395

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
15/06/2017
Last modified:
20/04/2025

Description

In FlexNet Publisher versions before Luton SP1 (11.14.1.1) running FlexNet Publisher Licensing Service on Windows platform, a boundary error related to a named pipe within the FlexNet Publisher Licensing Service can be exploited to cause an out-of-bounds memory read access and subsequently execute arbitrary code with SYSTEM privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:flexerasoftware:flexnet_publisher:*:*:*:*:*:*:*:* 11.14.1 (including)