Vulnerability Description
Buffer overflow in Web Retriever client for Lotus Notes/Domino R4.5 through R6 allows remote malicious web servers to cause a denial of service (crash) via a long HTTP status line.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Lotus Domino | 4.6.1 |
| Ibm | Lotus Notes Client | 5.0 |
References
- http://marc.info/?l=bugtraq&m=104757545500368&w=2Mailing ListThird Party Advisory
- http://www-1.ibm.com/support/docview.wss?rs=482&q=Domino&uid=swg21105060PatchVendor Advisory
- http://www.cert.org/advisories/CA-2003-11.htmlThird Party AdvisoryUS Government Resource
- http://www.ciac.org/ciac/bulletins/n-065.shtmlBroken Link
- http://www.kb.cert.org/vuls/id/411489Third Party AdvisoryUS Government Resource
- http://www.rapid7.com/advisories/R7-0011.htmlNot Applicable
- http://www.securityfocus.com/bid/7038Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11525Third Party AdvisoryVDB Entry
- http://marc.info/?l=bugtraq&m=104757545500368&w=2Mailing ListThird Party Advisory
- http://www-1.ibm.com/support/docview.wss?rs=482&q=Domino&uid=swg21105060PatchVendor Advisory
- http://www.cert.org/advisories/CA-2003-11.htmlThird Party AdvisoryUS Government Resource
- http://www.ciac.org/ciac/bulletins/n-065.shtmlBroken Link
- http://www.kb.cert.org/vuls/id/411489Third Party AdvisoryUS Government Resource
- http://www.rapid7.com/advisories/R7-0011.htmlNot Applicable
- http://www.securityfocus.com/bid/7038Third Party AdvisoryVDB Entry
FAQ
What is CVE-2003-0123?
CVE-2003-0123 is a vulnerability with a CVSS score of 5.0 (MEDIUM). Buffer overflow in Web Retriever client for Lotus Notes/Domino R4.5 through R6 allows remote malicious web servers to cause a denial of service (crash) via a long HTTP status line.
How severe is CVE-2003-0123?
CVE-2003-0123 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2003-0123?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Lotus Domino, Ibm Lotus Notes Client.