CVE-2013-0534: Low severity ibm sametime vulnerability
The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and 8.5.2.1, as used in the Lotus Notes client and separately, might allow local users to obtain sensitive information by leveraging the persistence of cleartext password strings within process memory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0534?
The severity of CVE-2013-0534 is considered to be medium due to the potential exposure of sensitive information.
How do I fix CVE-2013-0534?
To fix CVE-2013-0534, update to a version of IBM Sametime that is not affected by this vulnerability.
What types of software are affected by CVE-2013-0534?
CVE-2013-0534 affects IBM Sametime versions 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and 8.5.2.1.
What kind of information is at risk with CVE-2013-0534?
CVE-2013-0534 exposes cleartext password strings within process memory, risking sensitive authentication data.
Can local users exploit CVE-2013-0534?
Yes, local users can exploit CVE-2013-0534 to obtain sensitive information due to the persistence of passwords in memory.