9.8
CVSSv3

CVE-2017-11496

Published: 03/10/2017 Updated: 11/05/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Stack buffer overflow in hasplms in Gemalto ACC (Admin Control Center), all versions ranging from HASP SRM 2.10 to Sentinel LDK 7.50, allows remote malicious users to execute arbitrary code via malformed ASN.1 streams in V2C and similar input files.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gemalto sentinel ldk rte 2.10

gemalto sentinel ldk rte 7.50

gemalto sentinel ldk rte 3.0

gemalto sentinel ldk rte 7.1

Recent Articles

A silver bullet for the attacker
Securelist • Kaspersky Lab ICS CERT • 22 Jan 2018

In the past years, the problem of vulnerabilities in industrial automation systems has been becoming increasingly important. The fact that industrial control systems have been developing in parallel with IT systems, relatively independently and often without regard for modern secure coding practices is probably the main source of ICS security problems. As a result of this, numerous custom solutions have appeared, including proprietary network protocols and algorithms for authentication and encry...