Release date:
Updated on:
Affected Systems:
IBM Platform Symphony 6.1.1
IBM Platform Symphony 6.1.0
IBM Platform Symphony 5.2
Description:
--------------------------------------------------------------------------------
CVE (CAN) ID: CVE-2013-5387
IBM Lotus Symphony is a free office software released by IBM.
IBM Platform Symphony 5.2, 6.1.0, 6.1.1 has an error in processing SOAP requests. Attackers can exploit this vulnerability to cause a buffer overflow through a large malformed SOAP request.
<* Source: IBM (ncsupp@ca.ibm.com)
Link: http://secunia.com/advisories/55515/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ibm.com/support/fixcentral/
Http://www.ibm.com/support/docview.wss? Uid = isg3T1020072