PT-2015-1059 · Ibm · Ibm Domino
Published
2015-04-05
·
Updated
2019-10-16
·
CVE-2015-0134
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM Domino versions 8.5.x through 8.5.1 before FP5 IF3
IBM Domino versions 8.5.2 through 8.5.2 before FP4 IF3
IBM Domino versions 8.5.3 through 8.5.3 before FP6 IF6
IBM Domino versions 9.0 through 9.0 before IF7
IBM Domino versions 9.0.1 through 9.0.1 before FP2 IF3
Description
The issue is related to a buffer overflow in the SSLv2 implementation, allowing remote attackers to execute arbitrary code via unspecified vectors. This is a result of memory handling errors.
Recommendations
For IBM Domino 8.5.x, update to at least 8.5.1 FP5 IF3.
For IBM Domino 8.5.2, update to at least FP4 IF3.
For IBM Domino 8.5.3, update to at least FP6 IF6.
For IBM Domino 9.0, update to at least IF7.
For IBM Domino 9.0.1, update to at least FP2 IF3.
Fix
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Domino