CVE-2012-2176: Buffer Overflow
Published May 25, 2012
·Updated
Multiple stack-based buffer overflows in a certain ActiveX control in qp2.cab in IBM Lotus Quickr 8.2 before 8.2.0.27-002a for Domino allow remote attackers to execute arbitrary code via a long argument to the (1) AttachmentTimes or (2) ImportTimes method.
Affected Software
1 affected component
IBM Lotus Quickr=8.2
Event History
May 25, 2012
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2176?
CVE-2012-2176 is classified as a high severity vulnerability due to the potential for remote code execution.
2
How do I fix CVE-2012-2176?
To fix CVE-2012-2176, update IBM Lotus Quickr to version 8.2.0.27-002a or later.
3
What are the affected versions in CVE-2012-2176?
CVE-2012-2176 affects IBM Lotus Quickr version 8.2 prior to 8.2.0.27-002a.
4
What types of attacks are possible with CVE-2012-2176?
Attackers can exploit CVE-2012-2176 to execute arbitrary code on the affected system.
5
Is user interaction required to exploit CVE-2012-2176?
Yes, user interaction is typically required to trigger the vulnerability through the ActiveX control.