CVE-2020-4097: Buffer Overflow
In HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack 6 and version 11 previous to 11.0.1 FixPack 1, a vulnerability in the input parameter handling of the Notes Client could potentially be exploited by an attacker resulting in a buffer overflow. This could enable an attacker to crash HCL Notes or execute attacker-controlled code on the client.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-4097?
CVE-2020-4097 is a vulnerability in the input parameter handling of HCL Notes Client that could be exploited by an attacker resulting in a buffer overflow.
What software versions are affected by CVE-2020-4097?
HCL Notes versions 9.0 and previous, version 10.0 and previous, and version 11.0 and previous are affected.
How severe is CVE-2020-4097?
CVE-2020-4097 has a severity rating of 6.8, indicating a medium severity.
How can I fix CVE-2020-4097?
To fix CVE-2020-4097, update HCL Notes to version 9.0.1 FixPack 10 Interim Fix 8 or later, version 10.0.1 FixPack 6 or later, or version 11.0.1 FixPack 1 or later.
Where can I find more information about CVE-2020-4097?
More information about CVE-2020-4097 can be found at: [https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0084796](https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0084796)