RNUG Lotus User Group (www.vlaad.lv)

    security alert for Lotus Notes

    Vladislav Tatarincev  24 May 2011 23:41:54
    IBM Support announced a potential security hole in product.

    Patch is planned to be available 25May2011.

    (May 2011) Fixes for potential security vulnerabilities in Lotus Notes file viewers
    https://www-304.ibm.com/support/docview.wss?uid=swg21500034

    Both iDefense Labs and CoreLabs Research have contacted IBM to report potential buffer overflow vulnerabilities in several Lotus Notes file viewers. The specific issues vary depending on attachment type; however, they are all related in how the buffer overflow denial-of-service could be accomplished. In all cases, the issues involve viewing a malicious attachment from a Notes client on a Windows-based machine. Domino servers are not impacted. (Original publish date May 24, 2011. See "Change History" table below.)


    Comments
    No Comments Found

    Archives