Sentinel License Manager lservnt Service Remote Buffer Overflow
Critical Nessus Plugin ID 17326
SynopsisThe remote service is subject to a buffer overflow attack.
DescriptionThe remote host is running a version of Sentinel License Manager that is subject to remote buffer overflows. By sending 3000 bytes or more to the UDP port on which it listens (5093 by default), a remote attacker can crash the LServnt.exe service, overwrite the EIP register, and possibly execute arbitrary code.
SolutionUpgrade to Sentinel License Manager 8.0.0 or later as that reportedly addresses the issue.