Vulnerabilities > CVE-2010-4592 - Resource Management Errors vulnerability in IBM Lotus Mobile Connect
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The Mobile Network Connections functionality in the Connection Manager in IBM Lotus Mobile Connect before 6.1.4, when HTTP Access Services (HTTP-AS) is enabled, does not properly handle failed attempts at establishing HTTP-TCP sessions, which allows remote attackers to cause a denial of service (memory consumption and daemon crash) by making many TCP connection attempts.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 5 |
Common Weakness Enumeration (CWE)
References
- http://secunia.com/advisories/42703
- http://secunia.com/advisories/42703
- http://www-01.ibm.com/support/docview.wss?uid=swg1IZ74588
- http://www-01.ibm.com/support/docview.wss?uid=swg1IZ74588
- http://www-01.ibm.com/support/docview.wss?uid=swg27020327
- http://www-01.ibm.com/support/docview.wss?uid=swg27020327