RealNews

Confusion over serious Notes, Domino vulns

Lotus Notes and Domino are subject to an unholy trio of serious security vulnerabilities which could exploited in denial of service or privilege elevation attacks on the vulnerable system. That’s the stark warning from security outfit Rapid 7 (via a posting to BugTraq), which advises that a successful denial of service attack could result in corruption of Notes databases. Also, crackers may be able to take over vulnerable servers, Rapid 7 warns. Rapid 7 is delaying release of details of the vulnerabilities until Wednesday; in the mean time it strongly urges admins to “upgrade immediately to R5.0.12 or R6.0.1 to protect their servers”. Lotus R4, unsupported but widely used, is also vulnerable to the undocumented flaws. Full Story

OODA Analyst

OODA Analyst

OODA is comprised of a unique team of international experts capable of providing advanced intelligence and analysis, strategy and planning support, risk and threat management, training, decision support, crisis response, and security services to global corporations and governments.