Vulnerability Bulletins |
IBM Security Bulletin: Lotus Protector for Mail affected by libcurl vulnerability (CVE-2016-0755) |
|
| Affected software | IBM |
|
libcurl could allow a remote attacker to bypass security restrictions, caused by the failure to check NTLM-authenticated proxy connections for reuse. An attacker could exploit this vulnerability to use a proxy connection for a different authenticated client username. CVE(s): CVE-2016-0755Affected product(s) and affected version(s):IBM Lotus Protector for Mail Security 2.8.0.0 IBM Lotus Protector for Mail Security 2.8.1.0 Refer to the following reference URLs for remediation and additional More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_lotus_protector_for_mail_affected_by_libcurl_vulnerability_cve_2016_0755?lang=en_us |
|






