Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-8182

Опубликовано: 02 янв. 2020
Источник: nvd
CVSS3: 7.5
CVSS2: 4.3
EPSS Низкий

Описание

An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:openldap:openldap:2.4:*:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.05154
Низкий

7.5 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-193

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.

CVSS3: 3.7
redhat
больше 11 лет назад

An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.

CVSS3: 7.5
debian
около 6 лет назад

An off-by-one error leading to a crash was discovered in openldap 2.4 ...

github
больше 3 лет назад

An off-by-one error leading to a crash was discovered in openldap 2.4 when processing DNS SRV messages. If slapd was configured to use the dnssrv backend, an attacker could crash the service with crafted DNS responses.

EPSS

Процентиль: 90%
0.05154
Низкий

7.5 High

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-193