DominoSecurity Newsletter
(from DominoSecurity.org)


Date: 03/13/2003

Title: Details of Rapid7 vulnerability reports

Contents:

Hello DominoSecurity readers,

On March 3, I sent you an email about some Domino/Notes vulnerabilities discovered by Rapid7.com. At the time I was vague about the details of the problems, since Rapid7 asked me to do that.

Here are the full details, now released by Rapid7:

Buffer Overflow in Lotus Notes Protocol Authentication
http://www.rapid7.com/advisories/R7-0010.html

Lotus Notes/Domino Web Retriever HTTP Status Buffer
http://www.rapid7.com/advisories/R7-0011.html

Lotus Notes/Domino R6-beta PROTOS LDAP Denial of Service Regression
http://www.rapid7.com/advisories/R7-0012.html

Chuck Connell
www.chc-3.com
www.DominoAdministration.com