Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-1545

Опубликовано: 12 фев. 2015
Источник: debian
EPSS Средний

Описание

The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
openldapfixed2.4.40-4package
openldapno-dsawheezypackage
openldapno-dsasqueezepackage

Примечания

  • http://www.openldap.org/its/?findid=8027

  • http://www.openldap.org/devel/gitweb.cgi?p=openldap.git;a=commitdiff;h=c32e74763f77675b9e144126e375977ed6dc562c

EPSS

Процентиль: 96%
0.11091
Средний

Связанные уязвимости

ubuntu
больше 11 лет назад

The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.

redhat
больше 11 лет назад

The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.

nvd
больше 11 лет назад

The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.

github
около 4 лет назад

The deref_parseCtrl function in servers/slapd/overlays/deref.c in OpenLDAP 2.4.13 through 2.4.40 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an empty attribute list in a deref control in a search request.

suse-cvrf
около 11 лет назад

Security update for openldap2

EPSS

Процентиль: 96%
0.11091
Средний