First published: Fri Dec 31 2004(Updated: )
Buffer overflow in IBM Lotus Notes 6.5.x before 6.5.3 and 6.0.x before 6.0.5 allows remote attackers to cause a denial of service (crash) via unknown vectors related to Java applets, as identified by KSPR62F4KN.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Notes | =6.5.2 | |
IBM Lotus Notes | =6.0 | |
IBM Lotus Notes | =6.0.1 | |
IBM Lotus Notes | =6.0.2 | |
IBM Lotus Notes | =6.0.4 | |
IBM Lotus Notes | =6.5.1 | |
IBM Lotus Notes | =6.0.5 | |
IBM Lotus Notes | =6.5 | |
IBM Lotus Notes | =6.5.3 | |
IBM Lotus Notes | =6.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2280 has a medium severity rating due to its potential to cause denial of service by crashing the application.
To mitigate CVE-2004-2280, upgrade to IBM Lotus Notes version 6.5.3 or 6.0.5 or later.
CVE-2004-2280 affects IBM Lotus Notes versions 6.5.1 and earlier, as well as 6.0.4 and earlier.
CVE-2004-2280 enables remote attackers to execute a denial of service attack by exploiting a buffer overflow.
CVE-2004-2280 affects client installations of IBM Lotus Notes, particularly those using Java applets.