Lotus Patches Buffer Flaw in Domino
IBM's Lotus Software has patched a number of flaws in its Lotus Domino 6 Web server that had made the server susceptible to remotely exploitable buffer overruns.
The problems, first identified in mid-January, were reported earlier this week by Next Generation Security Software Ltd., a Surrey, England-based security software firm. Patches to fix the problems were issued by Lotus late last week in a 6.0.1 maintenance release of Domino, now available for download at the Lotus Web site.
NGSS discovered two vulnerabilities to denial of service attacks in Domino 6. The company also found a host/location buffer flow vulnerability when performing a redirect operation, that could allow an attacker to overflow the buffer and gain control of the Domino Web Services process.
More at eWeek
- Marvell enters draft-11g chipset market
- Everest Base Camp Internet Café Planned
- Legend Computer Plans Foreign Expansion
- Abit Adds OTESIII Technology To NV30 Offering
- Hands-on Preview Of Rise of Nations
- Microsoft Initiative Targets Academia
- FCC Modifies Local Access Rules
- IBM Speeds Up Unix Server
- Microsoft to Debut DRM in Office 2003
- Storage Vendors Weigh Options at IDF
- SiS Officially Announces Next Generation R659 Chipset
- Sun's AMD Pitch
- Cisco rounds 'em up for WLAN interoperability
- Samsung and LG.Philips LCD to raise March LCD monitor panel prices
- Elpida to move up 0.10-micron production to fiscal 2Q
- February notebook panel contract prices remain unchanged
- It's official! Tri-mode wireless race is on.
- Wi-Fi Alliance gears up early for 11g testing




