CVE-2018-7687

The Micro Focus Client for OES before version 2 SP4 IR8a has a vulnerability that could allow a local attacker to elevate privileges via a buffer overflow in ncfsd.sys.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microfocus:client:*:*:*:*:*:open_enterprise_server:*:*
cpe:2.3:a:microfocus:client:2.0:sp3:*:*:*:open_enterprise_server:*:*

History

07 Nov 2023, 03:01

Type Values Removed Values Added
References (MISC) https://www.novell.com/support/kb/doc.php?id=7022983 - Vendor Advisory () https://www.novell.com/support/kb/doc.php?id=7022983 -
References (MISC) https://bugzilla.novell.com/show_bug.cgi?id=1093607 - Issue Tracking, Permissions Required () https://bugzilla.novell.com/show_bug.cgi?id=1093607 -

Information

Published : 2018-05-21 20:29

Updated : 2024-02-28 16:25


NVD link : CVE-2018-7687

Mitre link : CVE-2018-7687

CVE.ORG link : CVE-2018-7687


JSON object : View

Products Affected

microfocus

  • client
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer