First published: Thu Dec 16 2010(Updated: )
traveler.exe in IBM Lotus Notes Traveler before 8.0.1.3 CF1 allows remote authenticated users to cause a denial of service (daemon crash) via a malformed invitation document in a sync operation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Notes Traveler | =8.0.1 | |
IBM Notes Traveler | =8.0.1.2 | |
IBM Notes Traveler | =8.0 | |
IBM Notes Traveler | <=8.0.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-5036 has an impact of causing a denial of service through a daemon crash.
To mitigate CVE-2009-5036, upgrade to IBM Lotus Notes Traveler version 8.0.1.3 or later.
CVE-2009-5036 affects IBM Lotus Notes Traveler versions 8.0, 8.0.1, and 8.0.1.2.
Yes, remote authenticated users can exploit CVE-2009-5036 by sending a malformed invitation document.
CVE-2009-5036 is classified as a denial of service vulnerability.