Vulnerability Description
Integer signedness error in ndiiop.exe in the DIIOP implementation in the server in IBM Lotus Domino before 8.5.3 allows remote attackers to execute arbitrary code via a GIOP client request, leading to a heap-based buffer overflow.
Affected Platforms (CPE)
π¦
Lotus Domino
<= 8.5.2.2π¦
Lotus Domino
= 6.0.1.1π¦
Lotus Domino
= 6.0.1.2π¦
Lotus Domino
= 6.0.1.3π¦
Lotus Domino
= 6.0.2.1π¦
Lotus Domino
= 6.0.2.2π¦
Lotus Domino
= 6.0.2_cf2π¦
Lotus Domino
= 6.5.2.1π¦
Lotus Domino
= 6.5.3.1π¦
Lotus Domino
= 6.5.4.1π¦
Lotus Domino
= 6.5.4.2π¦
Lotus Domino
= 6.5.4.3π¦
Lotus Domino
= 7.0.1.1π¦
Lotus Domino
= 7.0.2.1π¦
Lotus Domino
= 7.0.2.2π¦
Lotus Domino
= 7.0.2.3π¦
Lotus Domino
= 7.0.3.1π¦
Lotus Domino
= 7.0.4.1π¦
Lotus Domino
= 7.0.4.2π¦
Lotus Domino
= 8.0.2.1π¦
Lotus Domino
= 8.0.2.2π¦
Lotus Domino
= 8.0.2.3π¦
Lotus Domino
= 8.0.2.4π¦
Lotus Domino
= 8.0.2.5π¦
Lotus Domino
= 8.0.2.6π¦
Lotus Domino
= 8.5.1.1π¦
Lotus Domino
= 8.5.1.2π¦
Lotus Domino
= 8.5.1.3π¦
Lotus Domino
= 8.5.1.4π¦
Lotus Domino
= 8.5.1.5π¦
Lotus Domino
= 8.5.2.1