CVE-2009-5034
IBM Lotus Notes Traveler before 8.5.0.2 allows remote authenticated users to cause a denial of service (memory consumption and daemon crash) by syncing a large volume of data, related to the launch of a new process to handle the data while the previous…
Does this matter?
Lower severity and a low EPSS score (1.14%). Track it; it rarely justifies an emergency change on its own.
Description
IBM Lotus Notes Traveler before 8.5.0.2 allows remote authenticated users to cause a denial of service (memory consumption and daemon crash) by syncing a large volume of data, related to the launch of a new process to handle the data while the previous process is still operating on the data.
- CVSS 2.0
- 4.0 MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
- EPSS
- 1.14% probability · 65th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- ibm/lotus notes traveler
- Source
- cve@mitre.org
References
- http://www-01.ibm.com/support/docview.wss?uid=swg24019529&aid=1
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO41707Vendor Advisory
- http://www-10.lotus.com/ldd/dominowiki.nsf/page.xsp?documentId=A6604E906E0DF2DF8525778B005D4466&action=openDocument
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64741
- http://www-01.ibm.com/support/docview.wss?uid=swg24019529&aid=1
- http://www-1.ibm.com/support/docview.wss?uid=swg1LO41707Vendor Advisory
- http://www-10.lotus.com/ldd/dominowiki.nsf/page.xsp?documentId=A6604E906E0DF2DF8525778B005D4466&action=openDocument
- https://exchange.xforce.ibmcloud.com/vulnerabilities/64741
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.