CVE-2015-4994

CWE-119Buffer Overflow3 documents3 sources
Severity
7.5HIGH
EPSS
2.4%
top 14.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 29
Latest updateMay 13

Description

Buffer overflow in IBM Domino 8.5.1 through 8.5.3 before 8.5.3 FP6 IF10 and 9.x before 9.0.1 FP4 IF3 allows remote attackers to execute arbitrary code or cause a denial of service (SMTP daemon crash) via a crafted GIF image, aka SPRs KLYH9ZDKRE and KLYH9ZTLEZ, a different vulnerability than CVE-2015-5040.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDibm/domino5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-m2w3-q73x-fqwj: Buffer overflow in IBM Domino 82022-05-13
CVEList
CVE-2015-4994: Buffer overflow in IBM Domino 82015-10-29
CVE-2015-4994 (HIGH CVSS 7.5) | Buffer overflow in IBM Domino 8.5.1 | cvebase.io