First published: Tue Apr 25 2017(Updated: )
IBM Domino 8.5.3, and 9.0 is vulnerable to a stack based overflow in the IMAP service that could allow an authenticated attacker to execute arbitrary code by specifying a large mailbox name. IBM X-Force ID: 124749.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Domino | =8.5.3 | |
IBM Domino | =8.5.3.6 | |
IBM Domino | =9.0.0.0 | |
IBM Domino | =9.0.1 | |
IBM Domino | =9.0.1.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1274 has a high severity rating due to its potential for allowing an authenticated attacker to execute arbitrary code.
Fixing CVE-2017-1274 involves applying the latest security patches provided by IBM for the affected versions of IBM Domino.
Users running IBM Domino versions 8.5.3, 8.5.3.6, 9.0.0.0, 9.0.1, or 9.0.1.8 are affected by CVE-2017-1274.
CVE-2017-1274 is a stack-based overflow vulnerability specifically impacting the IMAP service of IBM Domino.
CVE-2017-1274 requires authentication to exploit, making it a concern for security in environments with valid user accounts.