[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2018-1036 --- 389-ds-base

ID: oval:org.secpod.oval:def:1700049Date: (C)2018-06-12   (M)2023-10-15
Class: PATCHFamily: unix




It was found that 389-ds-base did not properly handle long search filters with characters needing escapes, possibly leading to buffer overflows. A remote, unauthenticated attacker could potentially use this flaw to make ns-slapd crash via a specially crafted LDAP request, thus resulting in denial of service.

Platform:
Amazon Linux 2
Product:
389-ds-base
Reference:
ALAS2-2018-1036
CVE-2018-1089
CVE    1
CVE-2018-1089
CPE    2
cpe:/o:amazon:linux:2
cpe:/a:fedoraproject:389_directory_server

© SecPod Technologies