CVE-2022-44755: HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView
HCL Notes is susceptible to a stack based buffer overflow vulnerability in lasr.dll in Micro Focus KeyView. This could allow a remote unauthenticated attacker to crash the application or execute arbitrary code via a crafted Lotus Ami Pro file. This is different from the vulnerability described in CVE-2022-44751. This vulnerability applies to software previously licensed by IBM.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this HCL Notes vulnerability?
The vulnerability ID is CVE-2022-44755.
What is the affected software for this vulnerability?
The affected software is HCL Notes version 9.0.1 and 10.0.1.
What is the severity of CVE-2022-44755?
The severity of CVE-2022-44755 is critical.
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by crafting a malicious Lotus Ami Pro file.
Is there a fix available for CVE-2022-44755?
Yes, there is a fix available. Please refer to the following link for more information: [Link to the fix](https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0100260)