Borland AccuRev Stack Buffer Overflow Vulnerability (CVE-2015-6946)
Borland AccuRev Stack Buffer Overflow Vulnerability (CVE-2015-6946)
Release date:
Updated on:
Affected Systems:
Borland ACCUREV
Description:
CVE (CAN) ID: CVE-2015-6946
Borland AccuRev is a software configuration management tool.
Borland AccuRev's Reprise License Manager Service has multiple stack buffer overflow vulnerabilities. Remote attackers can use the licfile parameter to execute arbitrary code.
<* Source: rgod (rgod@autistici.org)
Link: http://www.zerodayinitiative.com/advisories/ZDI-15-416/
*>
Suggestion:
Vendor patch:
Borland
-------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.borland.com/Products/Change-Management/AccuRev
This article permanently updates the link address: