First published: Sat Dec 31 2005(Updated: )
The LDAP server (nldap.exe) in IBM Lotus Domino before 7.0.1, 6.5.5, and 6.5.4 FP2 allows remote attackers to cause a denial of service (crash) via a long bind request, which triggers a null dereference.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Domino Mail Server | =6.0 | |
IBM Lotus Domino Mail Server | =6.0.1 | |
IBM Lotus Domino Mail Server | =6.0.1.1 | |
IBM Lotus Domino Mail Server | =6.0.1.2 | |
IBM Lotus Domino Mail Server | =6.0.1.3 | |
IBM Lotus Domino Mail Server | =6.0.2.1 | |
IBM Lotus Domino Mail Server | =6.0.2.2 | |
IBM Lotus Domino Mail Server | =6.0.3 | |
IBM Lotus Domino Mail Server | =6.0.4 | |
IBM Lotus Domino Mail Server | =6.0.5 | |
IBM Lotus Domino Mail Server | =6.5 | |
IBM Lotus Domino Mail Server | =6.5.1 | |
IBM Lotus Domino Mail Server | =6.5.2 | |
IBM Lotus Domino Mail Server | =6.5.2.1 | |
IBM Lotus Domino Mail Server | =6.5.3 | |
IBM Lotus Domino Mail Server | =6.5.3.1 | |
IBM Lotus Domino Mail Server | =6.5.4 | |
IBM Lotus Domino Mail Server | =7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-2712 has a severity rating that indicates it can cause a denial of service due to a crash.
To fix CVE-2005-2712, upgrade IBM Lotus Domino to version 7.0.1, 6.5.5, or 6.5.4 FP2 or later.
CVE-2005-2712 affects IBM Lotus Domino versions 6.0, 6.0.1, 6.0.2, 6.5.2, 6.5.3, and 6.5.4 among others.
CVE-2005-2712 facilitates a denial of service attack triggered by a long bind request that causes a null dereference.
CVE-2005-2712 is a remote vulnerability that allows attackers to exploit the LDAP server without local access.