Required CVE Record Information
Description
Integer signedness error in ndiiop.exe in the DIIOP implementation in the server in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a GIOP client request, leading to a heap-based buffer overflow.
References 3 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- secunia.com: 43208 third-party-advisoryx_transferred
- http://zerodayinitiative.com/advisories/ZDI-11-052/ x_transferred
- http://www-01.ibm.com/support/docview.wss?uid=swg21461514 x_transferred