Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vm34-5fj4-jh3w

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 does not properly handle the simultaneous changing of multiple passwords, which makes it easier for remote authenticated users to cause a denial of service (DB2 daemon deadlock) by making password changes that trigger updates to a DB2 password-history table.

IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 does not properly handle the simultaneous changing of multiple passwords, which makes it easier for remote authenticated users to cause a denial of service (DB2 daemon deadlock) by making password changes that trigger updates to a DB2 password-history table.

EPSS

Процентиль: 58%
0.0036
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 15 лет назад

IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 does not properly handle the simultaneous changing of multiple passwords, which makes it easier for remote authenticated users to cause a denial of service (DB2 daemon deadlock) by making password changes that trigger updates to a DB2 password-history table.

EPSS

Процентиль: 58%
0.0036
Низкий

Дефекты

CWE-20