CVE-2009-5035: Infoleak
The Nokia client in IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle multiple outgoing e-mail messages between sync operations, which might allow remote attackers to read communications intended for other recipients by examining appended messages.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-5035?
CVE-2009-5035 has a medium severity level due to potential unauthorized access to sensitive email communications.
How do I fix CVE-2009-5035?
To fix CVE-2009-5035, upgrade to IBM Lotus Notes Traveler version 8.5.0.2 or later.
Which versions of IBM Lotus Notes Traveler are affected by CVE-2009-5035?
CVE-2009-5035 affects IBM Lotus Notes Traveler versions before 8.5.0.2 as well as specific versions like 8.0 and 8.5.0.0.
What type of vulnerability is CVE-2009-5035?
CVE-2009-5035 is a communication interception vulnerability that allows unauthorized access to email messages.
Who is at risk for the CVE-2009-5035 vulnerability?
Organizations using affected versions of IBM Lotus Notes Traveler for email communication are at risk for CVE-2009-5035.