CVE-2011-0918: Buffer Overflow
Stack-based buffer overflow in the NRouter (aka Router) service in IBM Lotus Domino allows remote attackers to execute arbitrary code via long filenames associated with Content-ID and ATTACH:CID headers in attachments in malformed calendar-request e-mail messages, aka SPR KLYH87LKRE.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0918?
CVE-2011-0918 has a critical severity rating due to its potential for remote code execution.
How do I fix CVE-2011-0918?
To fix CVE-2011-0918, users should apply the latest security patches provided by IBM for Lotus Domino.
What type of vulnerability is CVE-2011-0918?
CVE-2011-0918 is a stack-based buffer overflow vulnerability in the NRouter service of IBM Lotus Domino.
Who is affected by CVE-2011-0918?
CVE-2011-0918 affects all versions of IBM Lotus Domino that have the NRouter service enabled.
What can attackers do exploit CVE-2011-0918?
Attackers can exploit CVE-2011-0918 to execute arbitrary code by sending malformed calendar-request email messages with specially crafted filenames.