First published: Thu Dec 27 2007(Updated: )
Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa7w.dll, in Domino 6.x and 7.x allow remote attackers to execute arbitrary code, as demonstrated by an overflow from a long General_ServerName property value when calling the InstallBrowserHelperDll function in the Upload Module in the dwa7.dwa7.1 control in dwa7w.dll 7.0.34.1.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Domino Web Access | =6.5.4 | |
IBM Lotus Domino Web Access | =7.0.1 | |
Ibm Domino Web Access | =6.0.1 | |
IBM Lotus Domino Web Access | =7.0.34.1 | |
Ibm Domino Web Access | =7.0 | |
Ibm Domino Web Access | =6.0.2 | |
Ibm Domino Web Access | =6.0 | |
Ibm Domino Web Access | =7.0.1 | |
Ibm Domino Web Access | =6.0.3 | |
Ibm Domino Web Access | =6.5.1 | |
Ibm Domino Web Access | =6.5.5 | |
Ibm Domino Web Access | =6.5 | |
Ibm Domino Web Access | =6.0.1.1 | |
Ibm Domino Web Access | =6.5.2 | |
Ibm Domino Web Access | =6.0.5 | |
Ibm Domino Web Access | =6.0.4 | |
Ibm Domino Web Access | =6.5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.