CVE-2018-7687

The Micro Focus Client for OES before version 2 SP4 IR8a has a vulnerability that could allow a local attacker to elevate privileges via a buffer overflow in ncfsd.sys.
References
Link Resource
https://www.novell.com/support/kb/doc.php?id=7022983 Vendor Advisory
https://bugzilla.novell.com/show_bug.cgi?id=1093607 Issue Tracking Permissions Required
Configurations

Configuration 1

cpe:2.3:a:microfocus:client:2.0:sp3:*:*:*:open_enterprise_server:*:*
cpe:2.3:a:microfocus:client:*:*:*:*:*:open_enterprise_server:*:*

Information

Published : 2018-05-21 08:29

Updated : 2019-10-09 11:42


NVD link : CVE-2018-7687

Mitre link : CVE-2018-7687

Products Affected
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer