CVE-2012-0201: Buffer Overflow
Stack-based buffer overflow in pcspref.dll in pcsws.exe in IBM Personal Communications 5.9.x before 5.9.8 and 6.0.x before 6.0.4 might allow remote attackers to execute arbitrary code via a long profile string in a WorkStation (aka .ws) file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0201?
CVE-2012-0201 is classified as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2012-0201?
To mitigate CVE-2012-0201, update IBM Personal Communications to version 5.9.8 or later, or 6.0.4 or later.
Which versions of IBM Personal Communications are affected by CVE-2012-0201?
CVE-2012-0201 affects IBM Personal Communications versions 5.9.7.0, 5.9.7.1, and 6.0.3.0.
What type of attack is possible with CVE-2012-0201?
CVE-2012-0201 allows attackers to exploit a stack-based buffer overflow in order to execute arbitrary code remotely.
In what component does CVE-2012-0201 occur?
CVE-2012-0201 occurs in the pcspref.dll component of pcsws.exe in IBM Personal Communications.