CVE-2011-1214: Buffer Overflow
Stack-based buffer overflow in rtfsr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via a crafted link in a .rtf attachment, aka SPR PRAD8823JQ.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1214?
CVE-2011-1214 is classified as a high severity vulnerability due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2011-1214?
To resolve CVE-2011-1214, users should update to a patched version of IBM Lotus Notes, specifically to any version after 8.5.2 FP3.
Which versions of IBM Lotus Notes are affected by CVE-2011-1214?
CVE-2011-1214 affects various versions of IBM Lotus Notes, including versions 4.2 to 8.5.2 prior to FP3.
What type of vulnerability is CVE-2011-1214?
CVE-2011-1214 is a stack-based buffer overflow vulnerability found in the rtfsr.dll module.
Can CVE-2011-1214 be exploited by simply opening an attachment?
Yes, CVE-2011-1214 can be exploited by opening a crafted .rtf attachment containing a malicious link.