Computerworld

Fix: Potential Denial of Service Attack in Lotus Notes 5.08

According to Bugtraq a possible Denial of Service attack exists in the current version of Lotus Domino 5.08 and earlier.

"The DoS manifests itself on Lotus Domino servers with the http task running and ssl enabled.

A connection to the victim on port 443 with the nmap '-sR' switch will target this port with SunRPC program NULL commands in an attempt to determine whether it is an RPC port, and if so, what program and version number it serves up."

More information can be found at http://www.notes.net/r5fixlist.nsf/6d4eae9850a5c2c28525690400551b57/dd282ac278dd69ec85256aea0073a5e0?OpenDocument