About Duffbert...

Duffbert's Random Musings is a blog where I talk about whatever happens to be running through my head at any given moment... I'm Thomas Duff, and you can find out more about me here...

Email Me!

Search This Site!

Custom Search

I'm published!

Co-author of the book IBM Lotus Sametime 8 Essentials: A User's Guide
SametimeBookCoverImage.jpg

Purchase on Amazon

Co-author of the book IBM Sametime 8.5.2 Administration Guide
SametimeAdminBookCoverImage.jpg

Purchase on Amazon

MiscLinks

Visitor Count...



View My Stats

« Yeah, but we still hate you... | Main| Dell's Google software test may hurt Microsoft »

IBM Lotus Domino LDAP Server Denial of Service Vulnerability

Category IBM/Lotus

From Secunia:  http://secunia.com/advisories/18738/

Secunia Advisory:        SA18738
Release Date:        2006-02-07

Critical: Less critical
Impact: DoS
Where: From local network
Solution Status: Unpatched

Software: IBM Lotus Domino 7.x

Description: Evgeny Legerov has discovered a vulnerability in Lotus Domino, which can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an error in the LDAP server within the handling of certain requests. This can be exploited to crash the service via a specially-crafted request sent to port 389/tcp.

The vulnerability has been confirmed in version 7.0. Other versions may also be affected.

Solution: Restrict access to the LDAP service.

Comments

Gravatar Image1 - Tom,

I remember seeing something in the 7.0.1 fix list about a DoS bug that had been fixed. I wonder if this is related.

Bruce

Post A Comment

:-D:-o:-p:-x:-(:-):-\:angry::cool::cry::emb::grin::huh::laugh::lips::rolleyes:;-)

Want to support this blog or just say thanks?

When you shop Amazon, start your shopping experience here.

When you do that, all your purchases during that session earn me an affiliate commission via the Amazon Affiliate program. You don't have to buy the book I linked you to (although I wouldn't complain!). Simply use that as your starting point.

Thanks!

Thomas "Duffbert" Duff

Ads of Relevance...