CVE-2022-44751: HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView
HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could allow a remote unauthenticated attacker to crash the application or execute arbitrary code via a crafted Lotus Ami Pro file. This is different from the vulnerability described in CVE-2022-44755. This vulnerability applies to software previously licensed by IBM.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-44751?
CVE-2022-44751 is a vulnerability in HCL Notes that allows a remote attacker to crash the application or execute arbitrary code.
How severe is CVE-2022-44751?
CVE-2022-44751 has a severity score of 7.8, which is considered critical.
Which versions of HCL Notes are affected by CVE-2022-44751?
HCL Notes versions 9.0.1 to 10.0.1 (including various fix pack versions) are affected by CVE-2022-44751.
How can a remote attacker exploit CVE-2022-44751?
A remote attacker can exploit CVE-2022-44751 by creating a crafted Lotus Ami Pro file and tricking a user into opening it in HCL Notes.
Is there a fix available for CVE-2022-44751?
Yes, a fix is available for CVE-2022-44751. It is recommended to update to the latest version of HCL Notes or apply the necessary fix pack.