IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
BID:6870
Info
IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
| Bugtraq ID: | 6870 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2003-0178 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 17 2003 12:00AM |
| Updated: | Jul 11 2009 08:06PM |
| Credit: | Discovered by Mark Litchfield of Next Generation Security Software. |
| Vulnerable: |
Lotus Domino 6.0 |
| Not Vulnerable: |
Lotus Domino 6.0.1 |
Discussion
IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
It has been reported that Lotus Domino 6 is affected by a buffer overflow vulnerability. The condition occurs when the server constructs a HTTP redirect response. This may be exploited by malicious clients to gain control of affected servers. This vulnerability is reportedly fixed in Notes/Domino release 6.0.1.
It has been reported that Lotus Domino 6 is affected by a buffer overflow vulnerability. The condition occurs when the server constructs a HTTP redirect response. This may be exploited by malicious clients to gain control of affected servers. This vulnerability is reportedly fixed in Notes/Domino release 6.0.1.
Exploit / POC
IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
Solution:
Administrators are advised to upgrade to Domino 6.0.1. The upgrades for various platforms are available at the following location:
Lotus Domino 6.0
Solution:
Administrators are advised to upgrade to Domino 6.0.1. The upgrades for various platforms are available at the following location:
Lotus Domino 6.0
-
IBM Lotus Domino 6.0.1 Upgrade
http://www14.software.ibm.com/webapp/download/search.jsp?q=&cat=&pf=&k =&dt=&go=y&rs=ESD-DMNTSRVRi&S_TACT=&S_CMP=&sb=r
References
IBM Lotus Domino HTTP Redirect Buffer Overflow Vulnerability
References:
References:
- Lotus Domino Web Server Host/Location Buffer Overflow Vulnerability ("NGSSoftware Insight Security Research"
)