| Vulnerability Name: | CVE-2010-4550 (CCN-64304) | ||||||||
| Assigned: | 2010-12-16 | ||||||||
| Published: | 2010-12-16 | ||||||||
| Updated: | 2010-12-17 | ||||||||
| Summary: | IBM Lotus Notes Traveler before 8.5.1.3 allows remote attackers to cause a denial of service (sync failure) via a malformed document. | ||||||||
| CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
| CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P) 3.7 Low (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
3.7 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C)
| ||||||||
| Vulnerability Type: | CWE-20 | ||||||||
| Vulnerability Consequences: | Denial of Service | ||||||||
| References: | Source: MITRE Type: CNA CVE-2010-4550 Source: CCN Type: SA39880 IBM Lotus Notes Traveler Multiple Vulnerabilities Source: CCN Type: IBM APAR LO51818 MALFORM DOCUMENT DOES NOT CONTINUE TO PROCESS ALL OF THE ITEMS IN THE DOCUMENT. Source: AIXAPAR Type: Vendor Advisory LO51818 Source: CCN Type: IBM Web site Lotus Notes Traveler 851 FP3 Release Notes Source: CCN Type: Lotus Notes Traveler 851 FP3 Release Notes Lotus Notes Traveler 851 FP3 Release Notes Source: CONFIRM Type: UNKNOWN http://www-10.lotus.com/ldd/dominowiki.nsf/dx/Lotus_Notes_Traveler_851_FP3_Release_Notes Source: CONFIRM Type: UNKNOWN http://www-10.lotus.com/ldd/dominowiki.nsf/page.xsp?documentId=A6604E906E0DF2DF8525778B005D4466&action=openDocument Source: CCN Type: OSVDB ID: 69922 IBM Lotus Notes Traveler Malformed Document Sync Failure Remote DoS Source: CCN Type: BID-45564 IBM Lotus Notes Traveler Multiple Security Vulnerabilities Source: XF Type: UNKNOWN lotus-traveler-document-dos(64304) | ||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||