7.8

CVE-2022-44752

HCL Domino is susceptible to a stack based buffer overflow vulnerability in wp6sr.dll in Micro Focus KeyView

HCL Domino is susceptible to a stack based buffer overflow vulnerability in wp6sr.dll in Micro Focus KeyView.  This could allow a remote unauthenticated attacker to crash the application or execute arbitrary code via a crafted WordPerfect file.  This vulnerability applies to software previously licensed by IBM.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hcltech ≫ Domino Version 9.0
Hcltech ≫ Domino Version 9.0.1
Hcltech ≫ Domino Version 9.0.1 Update -
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_10_interim_fix_3
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_10_interim_fix_4
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_10_interim_fix_5
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_8
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_8_interim_fix_1
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_8_interim_fix_2
Hcltech ≫ Domino Version 9.0.1 Update feature_pack_8_interim_fix_3
Hcltech ≫ Domino Version 9.0.1 Update fixpack_10
Hcltech ≫ Domino Version 9.0.1 Update fixpack_3
Hcltech ≫ Domino Version 9.0.1 Update fixpack_4
Hcltech ≫ Domino Version 9.0.1 Update fixpack_5
Hcltech ≫ Domino Version 9.0.1 Update fixpack_6
Hcltech ≫ Domino Version 9.0.1 Update fixpack_7
Hcltech ≫ Domino Version 9.0.1 Update fixpack_8
Hcltech ≫ Domino Version 9.0.1 Update fixpack_9
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.65% 0.461
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
psirt@hcl.com 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0102151
Third Party Advisory