IBM Lotus iNotes Upload Module ActiveX Control Buffer Overflow Vulnerability

  Severity: CRITICAL
  CVE Identifier: CVE-2012-2175
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Buffer overflow in the Attachment_Times method in a certain ActiveX control in dwa85W.dll in IBM Lotus iNotes FP2 allows remote attackers to execute arbitrary code via a long argument.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1005131
  Trend Micro Deep Security DPI Rule Name: 1005131 - IBM Lotus iNotes Upload Module ActiveX Control Buffer Overflow Vulnerability

  AFFECTED SOFTWARE AND VERSION

  • IBM Lotus iNotes
  • Internet Explorer

Featured Stories