CVE Published: 11/11/2009 |
CVE Updated: 07/08/2024 |
CVE Year: 2009 Source: microsoft |
Vendor: n/a |
Product: n/a Status : PUBLISHED
CVE-2009-2523 Description
The License Logging Server (llssrv.exe) in Microsoft Windows 2000 SP4 allows remote attackers to execute arbitrary code via an RPC message containing a string without a null terminator, which triggers a heap-based buffer overflow in the LlsrLicenseRequestW method, aka "License Logging Server Heap Overflow Vulnerability."