Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-1062

Опубликовано: 12 фев. 2024
Источник: debian
EPSS Низкий

Описание

A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
389-ds-basefixed2.3.4+dfsg1-1package
389-ds-baseno-dsabookwormpackage
389-ds-baseno-dsabullseyepackage
389-ds-baseno-dsabusterpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2261879

  • https://bugzilla.redhat.com/show_bug.cgi?id=2256711

  • https://github.com/389ds/389-ds-base/issues/5647

  • Fixed by: https://github.com/389ds/389-ds-base/commit/db7be9fbea1603202fe5829f7ae46bfb83d951c0 (389-ds-base-2.3.3)

  • Fixed by: https://github.com/389ds/389-ds-base/commit/fd6b417fc53d1c97675638c5489b122e1cf4f1d6 (389-ds-base-2.3.3)

EPSS

Процентиль: 4%
0.00022
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 1 года назад

A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.

CVSS3: 5.5
redhat
больше 1 года назад

A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.

CVSS3: 5.5
nvd
больше 1 года назад

A heap overflow flaw was found in 389-ds-base. This issue leads to a denial of service when writing a value larger than 256 chars in log_entry_attr.

suse-cvrf
около 1 года назад

Security update for 389-ds

suse-cvrf
больше 1 года назад

Security update for 389-ds

EPSS

Процентиль: 4%
0.00022
Низкий