CVE-2014-0892

Severity
5.0MEDIUM
EPSS
1.3%
top 20.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 23
Latest updateMay 17

Description

IBM Notes and Domino 8.5.x before 8.5.3 FP6 IF3 and 9.x before 9.0.1 FP1 on 32-bit Linux platforms use incorrect gcc options, which makes it easier for remote attackers to execute arbitrary code by leveraging the absence of the NX protection mechanism and placing crafted x86 code on the stack, aka SPR KLYH9GGS9W.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDibm/lotus_notes23 versions+22
NVDibm/lotus_domino22 versions+21

🔴Vulnerability Details

2
GHSA
GHSA-vmw7-x4vm-vh4w: IBM Notes and Domino 82022-05-17
CVEList
CVE-2014-0892: IBM Notes and Domino 82014-04-23