CVE-2011-0913: Buffer Overflow
Stack-based buffer overflow in ndiiop.exe in the DIIOP implementation in the server in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a GIOP getEnvironmentString request, related to the local variable cache.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0913?
CVE-2011-0913 is classified as a high-severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2011-0913?
To mitigate CVE-2011-0913, it is recommended to upgrade to IBM Lotus Domino version 8.5.3 or later.
What is the cause of CVE-2011-0913?
CVE-2011-0913 is caused by a stack-based buffer overflow in the DIIOP implementation of ndiiop.exe.
Which versions of IBM Lotus Domino are affected by CVE-2011-0913?
CVE-2011-0913 affects multiple versions of IBM Lotus Domino, including 5.0.x, 6.0.x, 7.0.x, and 8.0.x up to 8.5.2.
What types of attacks can exploit CVE-2011-0913?
CVE-2011-0913 can be exploited by sending a specially crafted GIOP getEnvironmentString request to the vulnerable server.