First published: Tue Mar 18 2003(Updated: )
Buffer overflow in Web Retriever client for Lotus Notes/Domino R4.5 through R6 allows remote malicious web servers to cause a denial of service (crash) via a long HTTP status line.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Lotus Notes Client | =5.0.4 | |
Ibm Lotus Notes Client | =5.0.11 | |
IBM Lotus Domino | =5.0.4 | |
IBM Lotus Domino | =5.0.2 | |
Ibm Lotus Notes Client | =r5 | |
IBM Lotus Domino | =4.6.4 | |
Ibm Lotus Notes Client | =5.0.5 | |
Ibm Lotus Notes Client | =5.0 | |
Ibm Lotus Notes Client | =5.0.2 | |
IBM Lotus Domino | =4.6.1 | |
IBM Lotus Domino | =5.0.8a | |
IBM Lotus Domino | =5.0.9 | |
IBM Lotus Domino | =5.0.1 | |
IBM Lotus Domino | =5.0.5 | |
IBM Lotus Domino | =5.0.6a | |
Ibm Lotus Notes Client | =5.0.10 | |
IBM Lotus Domino | =5.0.3 | |
IBM Lotus Domino | =5.0.4a | |
Ibm Lotus Notes Client | =5.0.1 | |
Ibm Lotus Notes Client | =5.0.3 | |
IBM Lotus Domino | =4.6.3 | |
IBM Lotus Domino | =5.0 | |
IBM Lotus Domino | =5.0.6 | |
IBM Lotus Domino | =5.0.7 | |
IBM Lotus Domino | =5.0.9a | |
IBM Lotus Domino | =5.0.11 | |
Ibm Lotus Notes Client | =5.0.9a | |
IBM Lotus Domino | =5.0.7a | |
IBM Lotus Domino | =5.0.8 | |
IBM Lotus Domino | =5.0.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0123 is considered a moderate severity vulnerability due to its potential to cause a denial of service.
To fix CVE-2003-0123, it is recommended to apply the latest updates and patches provided by IBM for affected Lotus Notes and Domino versions.
CVE-2003-0123 affects multiple versions of IBM Lotus Notes and Domino, including versions 4.6.1, 4.6.3, 4.6.4, and various releases in the 5.0.x range.
If exploited, CVE-2003-0123 can lead to a denial of service, causing the application to crash upon receiving malicious HTTP status lines.
Currently, there are no official workarounds for CVE-2003-0123 aside from applying the relevant corrections as soon as they are available.