Release date:
Updated on:
Affected Systems:
IBM Lotus quick R 8.2
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53678
Cve id: CVE-2012-2176
IBM Lotus Quickr is a team collaboration software that helps access people, information, and project materials needed to complete tasks.
IBM Lotus Quickr for Domino 8.2 has a remote stack buffer overflow vulnerability caused by a boundary error in the implementation of the qp2.cab ActiveX Control. Attackers can call the "Attachment_Times () the "or" Import_Times () "method exploits this vulnerability to cause stack buffer overflow and arbitrary code execution.
<* Source: anonymous
Link: http://www-304.ibm.com/support/docview.wss? Uid = swg21596191
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ers.ibm.com/