Stack Buffer Overflow Vulnerability in HCL Notes Client
CVE-2020-14224

9.8CRITICAL

Key Information:

Status
Vendor
CVE Published:
18 December 2020

Summary

A stack buffer overflow vulnerability exists in the MIME message handling of the HCL Notes v9 client. This issue may be exploited by an unauthenticated attacker, potentially allowing them to crash the Notes application or inject malicious code that executes with the privileges of the currently logged-in user. Users of HCL Notes v9 should be aware of this vulnerability to mitigate potential risks.

Affected Version(s)

HCL Notes v9

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.