IBM Lotus iNotes ActiveX Control Attach_Times Buffer Overflow

Strike ID:
E12-vcu01
CVSS:
9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
False Positive:
f
Variants:
1
Year:
2012

Description

This strike exploits a vulnerability in IBM Lotus iNotes ActiveX control. If the General_Mode property is equal to 1 the Attachment_Times property is parsed as date time strings. This is stored in a 0x200 byte stack buffer, and if the string too large it will write into it.

CVE