PT-2015-1205 · Ibm · Ibm Domino
Bilou
·
Published
2015-05-12
·
Updated
2019-10-16
·
CVE-2015-1902
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM Domino versions 8.5 before 8.5.3 FP6 IF7
IBM Domino versions 9.0 before 9.0.1 FP3 IF3
Description
The issue is caused by a stack-based buffer overflow error. It can be exploited by a remote attacker using a specially crafted BMP image to execute arbitrary code.
Recommendations
For IBM Domino versions 8.5 before 8.5.3 FP6 IF7, update to version 8.5.3 FP6 IF7 or later.
For IBM Domino versions 9.0 before 9.0.1 FP3 IF3, update to version 9.0.1 FP3 IF3 or later.
Fix
RCE
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Domino