IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by omitting the Internet ID field in the person document, and then using an Apple device to (1) accept or (2) decline an invitation.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:21
Type | Values Removed | Values Added |
---|---|---|
References | () http://www-1.ibm.com/support/docview.wss?uid=swg1LO49829 - Vendor Advisory | |
References | () http://www-10.lotus.com/ldd/dominowiki.nsf/dx/Lotus_Notes_Traveler_851_FP3_Release_Notes - | |
References | () http://www-10.lotus.com/ldd/dominowiki.nsf/page.xsp?documentId=A6604E906E0DF2DF8525778B005D4466&action=openDocument - |
Information
Published : 2010-12-16 20:00
Updated : 2024-11-21 01:21
NVD link : CVE-2010-4551
Mitre link : CVE-2010-4551
CVE.ORG link : CVE-2010-4551
JSON object : View
Products Affected
ibm
- lotus_notes_traveler
CWE