CVE-2006-0121

IBM Lotus Notes and Domino Server < 6.5.5 - Denial of Service via Memory Leak

Title source: llm
STIX 2.1

Description

Multiple memory leaks in IBM Lotus Notes and Domino Server before 6.5.5 allow attackers to cause a denial of service (memory consumption and crash) via unknown vectors related to (1) unspecified vectors during the SSL handshake (SPR# MKIN67MQVW), (2) the stash file during the SSL handshake (SPR# MKIN693QUT), and possibly other vectors. NOTE: due to insufficient information in the original vendor advisory, it is not clear whether there is an attacker role in other memory leaks that are specified in the advisory.

References (7)

Core 7
Core References
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/16158
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18328
Various Sources x_refsource_confirm
http://www-1.ibm.com/support/docview.wss?uid=swg27007054
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/24223
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0081

Scores

EPSS 0.0169
EPSS Percentile 74.8%

Details

Status published
Products (12)
ibm/lotus_domino 6.5.0
ibm/lotus_domino 6.5.1
ibm/lotus_domino 6.5.2
ibm/lotus_domino 6.5.3
ibm/lotus_domino 6.5.4 (3 CPE variants)
ibm/lotus_domino_enterprise_server 6.5.2
ibm/lotus_domino_enterprise_server 6.5.4
ibm/lotus_notes 6.5
ibm/lotus_notes 6.5.1
ibm/lotus_notes 6.5.2
... and 2 more
Published Jan 09, 2006
Tracked Since Feb 18, 2026