Vulnerability Bulletins

IBM Security Bulletin: Lotus Protector for Mail affected by libcurl vulnerability (CVE-2016-0755)

   
Affected software IBM
 
libcurl could allow a remote attacker to bypass security restrictions, caused by the failure to check NTLM-authenticated proxy connections for reuse. An attacker could exploit this vulnerability to use a proxy connection for a different authenticated client username. CVE(s): CVE-2016-0755Affected product(s) and affected version(s):IBM Lotus Protector for Mail Security 2.8.0.0 IBM Lotus Protector for Mail Security 2.8.1.0 Refer to the following reference URLs for remediation and additional

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_lotus_protector_for_mail_affected_by_libcurl_vulnerability_cve_2016_0755?lang=en_us