CERT-In Vulnerability Note
CIVN-2011-0193
IBM Lotus Domino Server RPC Denial of Service Vulnerability
Original Issue Date:December 27, 2011
Severity Rating: LOW
Systems Affected
Overview
A vulnerability has been reported in IBM Lotus Domino which could be exploited by a malicious users to cause a DoS (Denial of Service).
Description
The vulnerability is due to an error while handling certain RPC operations related to authentication. A remote attacker could exploit this vulnerability by sending a specially-crafted Notes client packet to cause the Lotus Domino Server to crash.
Solution
Update to version 8.5.2 Fix Pack 4 or 8.5.3.
Vendor Information
IBM
http://www-01.ibm.com/support/docview.wss?uid=swg21575247
References
IBM
http://www-01.ibm.com/support/docview.wss?uid=swg21575247
Secunia
http://secunia.com/advisories/47331/
CVE Name
CVE-2011-1393
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|