LanSpy 2.0.1.159 Local Buffer Overflow Flaws Enable Potential Code Execution
Two high-severity vulnerabilities, CVE-2018-25265 and CVE-2018-25268, were documented for LanSpy 2.0.1.159, affecting the application's scan functionality and exposing users to local buffer overflow attacks. The flaws were classified as CWE-787 and can let an attacker trigger memory corruption by supplying oversized input in the scan section or scan field, causing application crashes and creating a path to arbitrary code execution.
The published details indicate that CVE-2018-25265 can be exploited through structured exception handling (SEH), including egghunter-based shellcode discovery and controlled jumps, while CVE-2018-25268 allows instruction pointer overwrite with a payload consisting of 688 bytes of padding followed by 4 bytes of attacker-controlled data. Both entries were assigned high-impact CVSS v3.1 and CVSS v4.0 severity metrics, and the records reference material from LizardSystems, Exploit-DB, and VulnCheck.

Get ahead of threats like this
Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
How this story unfolded
2 events from the most recent confirmed update back to the earliest known activity.
Vulnerability metadata and references are published for both LanSpy flaws
The CVE records were published with CWE-787 classification, CVSS v3.1 and v4.0 severity vectors, and references to LizardSystems, Exploit-DB, and VulnCheck. The disclosures document technical exploitation details such as SEH abuse, egghunter-based shellcode discovery, and instruction-pointer overwrite via oversized input.
LanSpy local buffer overflow vulnerabilities receive CVE entries
Two local buffer overflow flaws affecting LanSpy 2.0.1.159, later tracked as CVE-2018-25265 and CVE-2018-25268, were received by disclosure@vulncheck.com. The entries describe memory corruption in the scan functionality that could allow crashes and possible arbitrary code execution.
Related entities
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Sources
2 references tracked. Mallory keeps watching after this page renders.
See the full picture, correlated to your attack surface.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.


