← volver
CVE-2019-10882

Netskope client buffer overflow vulnerability

CVSS 5.5 MEDIUMEPSS 0.4%CWE-120
The Netskope client service, v57 before 57.2.0.219 and v60 before 60.2.0.214, running with NT\SYSTEM privilege, accepts network connections from localhost. The connection handling function in this service suffers from a stack based buffer overflow in "doHandshakefromServer" function. Local users can use this vulnerability to trigger a crash of the service and potentially cause additional impact on the system.
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Productos afectados
Netskope · Netskope client

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →