CVE-2014-0892
Last modified
CVE-2014-0892 is a vulnerability of currently unknown severity. IBM Notes and Domino 8.5.x before 8.5.3 FP6 IF3 and 9.x before 9.0.1 FP1 on 32-bit Linux platforms use incorrect gcc options, which makes it easier for remote attackers to execute arbitrary code by leveraging the absence of the NX protection mechanism and placing crafted x86 code on the stack, aka SPR KLYH9GGS9W.. EPSS estimates a 4.11% chance of exploitation in the next 30 days.
Description
IBM Notes and Domino 8.5.x before 8.5.3 FP6 IF3 and 9.x before 9.0.1 FP1 on 32-bit Linux platforms use incorrect gcc options, which makes it easier for remote attackers to execute arbitrary code by leveraging the absence of the NX protection mechanism and placing crafted x86 code on the stack, aka SPR KLYH9GGS9W.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Lotus Domino | 8.5.0 |
| Ibm | Lotus Domino | 8.5.0.1 |
| Ibm | Lotus Domino | 8.5.1 |
| Ibm | Lotus Domino | 8.5.1.1 |
| Ibm | Lotus Domino | 8.5.1.2 |
| Ibm | Lotus Domino | 8.5.1.3 |
| Ibm | Lotus Domino | 8.5.1.4 |
| Ibm | Lotus Domino | 8.5.1.5 |
| Ibm | Lotus Domino | 8.5.2.0 |
| Ibm | Lotus Domino | 8.5.2.1 |
| Ibm | Lotus Domino | 8.5.2.2 |
| Ibm | Lotus Domino | 8.5.2.3 |
| Ibm | Lotus Domino | 8.5.2.4 |
| Ibm | Lotus Domino | 8.5.3.0 |
| Ibm | Lotus Domino | 8.5.3.1 |
| Ibm | Lotus Domino | 8.5.3.2 |
| Ibm | Lotus Domino | 8.5.3.3 |
| Ibm | Lotus Domino | 8.5.3.4 |
| Ibm | Lotus Domino | 8.5.3.5 |
| Ibm | Lotus Domino | 8.5.3.6 |
| Ibm | Lotus Domino | 9.0.0.0 |
| Ibm | Lotus Domino | 9.0.1.0 |
| Ibm | Lotus Notes | 8.5 |
| Ibm | Lotus Notes | 8.5.0.0 |
| Ibm | Lotus Notes | 8.5.0.1 |
| Ibm | Lotus Notes | 8.5.1 |
| Ibm | Lotus Notes | 8.5.1.0 |
| Ibm | Lotus Notes | 8.5.1.1 |
| Ibm | Lotus Notes | 8.5.1.2 |
| Ibm | Lotus Notes | 8.5.1.3 |
| Ibm | Lotus Notes | 8.5.1.4 |
| Ibm | Lotus Notes | 8.5.1.5 |
| Ibm | Lotus Notes | 8.5.2.0 |
| Ibm | Lotus Notes | 8.5.2.1 |
| Ibm | Lotus Notes | 8.5.2.2 |
| Ibm | Lotus Notes | 8.5.2.3 |
| Ibm | Lotus Notes | 8.5.3 |
| Ibm | Lotus Notes | 8.5.3.1 |
| Ibm | Lotus Notes | 8.5.3.2 |
| Ibm | Lotus Notes | 8.5.3.3 |
| Ibm | Lotus Notes | 8.5.3.4 |
| Ibm | Lotus Notes | 8.5.3.5 |
| Ibm | Lotus Notes | 8.5.3.6 |
| Ibm | Lotus Notes | 9.0.0.0 |
| Ibm | Lotus Notes | 9.0.1.0 |
References
- http://www-01.ibm.com/support/docview.wss?uid=swg21670264Vendor Advisory
- http://www.kb.cert.org/vuls/id/350089US Government Resource
- http://www-01.ibm.com/support/docview.wss?uid=swg21670264Vendor Advisory
- http://www.kb.cert.org/vuls/id/350089US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-0892?
How severe is CVE-2014-0892?
How do I fix CVE-2014-0892?
Are you affected by CVE-2014-0892?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
