IBM Notes / Domino Multiple Vulnerabilities
RISK: High Risk
TYPE: Clients - Email Clients
Multiple vulnerabilities have been identified in IBM Notes and IBM Domino, which can be exploited by malicious, local users to disclose sensitive information, manipulate certain data, cause a DoS (Denial of Service), and gain escalated privileges, and by malicious people to conduct spoofing attacks, disclose certain sensitive information, manipulate certain data, bypass certain security restrictions, cause a DoS, and compromise a vulnerable system.
- An unspecified error can be exploited to disclose information. No further information is currently available.
This vulnerability is reported in IBM Notes and IBM Domino 32-bit Linux versions 9.0.1 and prior, 9.0.1 Interim Fix 2 and prior, and 8.5.x. - The application bundles a vulnerable version of Java.
This vulnerability is reported in versions 9.0.1 and prior, 9.0.1 Interim Fix 2 and prior, 8.0.x, and 8.5.x.
Impact
- Denial of Service
- Security Restriction Bypass
- Information Disclosure
- Spoofing
- Data Manipulation
System / Technologies affected
- IBM Domino (formerly IBM Lotus Domino) 9.x
- IBM Lotus Domino 8.x
- IBM Lotus Notes 8.x
- IBM Notes (formerly IBM Lotus Notes) 9.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Apply fix
http://www.ibm.com/support/docview.wss?uid=swg21670264
http://www.ibm.com/support/docview.wss?uid=swg24037141
Vulnerability Identifier
- CVE-2013-3829
- CVE-2013-4002
- CVE-2013-5772
- CVE-2013-5774
- CVE-2013-5775
- CVE-2013-5776
- CVE-2013-5777
- CVE-2013-5778
- CVE-2013-5780
- CVE-2013-5782
- CVE-2013-5783
- CVE-2013-5784
- CVE-2013-5787
- CVE-2013-5788
- CVE-2013-5789
- CVE-2013-5790
- CVE-2013-5797
- CVE-2013-5800
- CVE-2013-5801
- CVE-2013-5802
- CVE-2013-5803
- CVE-2013-5804
- CVE-2013-5805
- CVE-2013-5806
- CVE-2013-5809
- CVE-2013-5810
- CVE-2013-5812
- CVE-2013-5814
- CVE-2013-5817
- CVE-2013-5818
- CVE-2013-5819
- CVE-2013-5820
- CVE-2013-5823
- CVE-2013-5824
- CVE-2013-5825
- CVE-2013-5829
- CVE-2013-5830
- CVE-2013-5831
- CVE-2013-5832
- CVE-2013-5838
- CVE-2013-5840
- CVE-2013-5842
- CVE-2013-5843
- CVE-2013-5844
- CVE-2013-5846
- CVE-2013-5848
- CVE-2013-5849
- CVE-2013-5850
- CVE-2013-5851
- CVE-2013-5852
- CVE-2013-5854
- CVE-2013-5870
- CVE-2013-5878
- CVE-2013-5884
- CVE-2013-5887
- CVE-2013-5888
- CVE-2013-5889
- CVE-2013-5893
- CVE-2013-5895
- CVE-2013-5896
- CVE-2013-5898
- CVE-2013-5899
- CVE-2013-5902
- CVE-2013-5904
- CVE-2013-5905
- CVE-2013-5906
- CVE-2013-5907
- CVE-2013-5910
- CVE-2014-0368
- CVE-2014-0373
- CVE-2014-0375
- CVE-2014-0376
- CVE-2014-0382
- CVE-2014-0385
- CVE-2014-0387
- CVE-2014-0403
- CVE-2014-0408
- CVE-2014-0410
- CVE-2014-0411
- CVE-2014-0415
- CVE-2014-0416
- CVE-2014-0417
- CVE-2014-0418
- CVE-2014-0422
- CVE-2014-0423
- CVE-2014-0424
- CVE-2014-0428
- CVE-2014-0892
Source
Related Link
Share with