vendor:
IBM Lotus Sametime
by:
Manuel Santamarina Suarez
7.5
CVSS
HIGH
Remote buffer-overflow
119
CWE
Product Name: IBM Lotus Sametime
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE: a:ibm:lotus_sametime
Platforms Tested:
IBM Lotus Sametime Remote Buffer Overflow Vulnerability
The vulnerability exists in IBM Lotus Sametime due to a failure to properly bounds-check user-supplied data before copying it to an insufficiently sized memory buffer. An attacker can exploit this vulnerability to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in a denial of service.
Mitigation:
Apply the latest security patches provided by IBM. Avoid opening untrusted documents or visiting malicious websites.