CNNVD-202511-758 Information

CNNVD ID

CNNVD-202511-758

CVE-2025-12418

  • CNNVD Published: 2025-11-07

Description (Chinese)

Revenera InstallShield(Flexera InstallShield)是Revenera公司的一个开发包。用于构建 Windows 安装程序和 MSIX 软件包。 Revenera InstallShield(Flexera InstallShield) 2025 R1版本、2024 R2版本、2023 R2版本和之前版本存在安全漏洞,该漏洞源于删除用户可写配置目录时可能跟随符号链接,可能导致拒绝服务攻击。

Description (English)

Revenera Install Shield (Flexera Install Shield) is a development package for Revera. For the construction of Windows Installer and MSIX packages. Revenera Install Shield (Flexera Install Shield) 2025 R1, 2024 R2, 2023 R2 and previous versions had a security loophole, which stemmed from the possibility of following a symbol link to remove the user-enabled profile and could lead to a denial of service attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Revenera

Published

2025-11-07

Last Modified

2026-02-24

References

https://community.revenera.com/s/article/CVE-2025-12418-Potential-Unintended-File-Deletion-Issue-Caused-by-InstallShield-Suite-Uninstallation-Process https://access.redhat.com/security/cve/cve-2025-12418

Patch

https://community.revenera.com/s/downloads-page

Share on: