Vulnerability Description
Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via a crafted BMP image, aka SPR KLYH9TSN3Y.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Domino | 8.5.0 |
Related Weaknesses (CWE)
References
- http://www-01.ibm.com/support/docview.wss?uid=swg21883245PatchVendor Advisory
- http://www.securityfocus.com/bid/74598Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032376Third Party AdvisoryVDB Entry
- http://www.zerodayinitiative.com/advisories/ZDI-15-194Third Party AdvisoryVDB Entry
- http://www-01.ibm.com/support/docview.wss?uid=swg21883245PatchVendor Advisory
- http://www.securityfocus.com/bid/74598Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032376Third Party AdvisoryVDB Entry
- http://www.zerodayinitiative.com/advisories/ZDI-15-194Third Party AdvisoryVDB Entry
FAQ
What is CVE-2015-1903?
CVE-2015-1903 is a vulnerability with a CVSS score of 10.0 (HIGH). Stack-based buffer overflow in IBM Domino 8.5 before 8.5.3 FP6 IF7 and 9.0 before 9.0.1 FP3 IF3 allows remote attackers to execute arbitrary code via a crafted BMP image, aka SPR KLYH9TSN3Y.
How severe is CVE-2015-1903?
CVE-2015-1903 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-1903?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Domino.