Lotus Domino Web Server HTTP Header DoS Vulnerability
BID:2565
Info
Lotus Domino Web Server HTTP Header DoS Vulnerability
| Bugtraq ID: | 2565 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 11 2001 12:00AM |
| Updated: | Apr 11 2001 12:00AM |
| Credit: | Discovered and posted to Bugtraq by Peter Gründl <[email protected]> on April 11, 2001. |
| Vulnerable: |
Lotus Domino 5.0.6 Lotus Domino 5.0.5 Lotus Domino 5.0.4 Lotus Domino 5.0.3 Lotus Domino 5.0.2 Lotus Domino 5.0.1 |
| Not Vulnerable: |
Lotus Domino 5.0.7 |
Discussion
Lotus Domino Web Server HTTP Header DoS Vulnerability
Due to the handling of unusual input in various HTTP headers, a denial of service condition exists in Lotus Domino server.
Submitting numerous HTTP requests with modified headers, could cause Lotus Domino to consume all available system resources.
Due to the handling of unusual input in various HTTP headers, a denial of service condition exists in Lotus Domino server.
Submitting numerous HTTP requests with modified headers, could cause Lotus Domino to consume all available system resources.
Exploit / POC
Lotus Domino Web Server HTTP Header DoS Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Lotus Domino Web Server HTTP Header DoS Vulnerability
Solution:
Lotus has addressed this issue in Domino Server 5.0.7:
http://www.notes.net/qmrdown.nsf/QMRWelcome
Solution:
Lotus has addressed this issue in Domino Server 5.0.7:
http://www.notes.net/qmrdown.nsf/QMRWelcome
References
Lotus Domino Web Server HTTP Header DoS Vulnerability
References:
References: