Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-3480

Опубликовано: 20 мая 2021
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN could allow an unauthenticated attacker to crash the 389-ds-base directory server. The highest threat from this vulnerability is to system availability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:slapi-nis_project:slapi-nis:*:*:*:*:*:*:*:*
Версия до 0.56.7 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.02395
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 4 лет назад

A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN could allow an unauthenticated attacker to crash the 389-ds-base directory server. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
redhat
около 4 лет назад

A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN could allow an unauthenticated attacker to crash the 389-ds-base directory server. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
debian
около 4 лет назад

A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointe ...

rocky
почти 4 года назад

Important: idm:DL1 security update

github
около 3 лет назад

A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN could allow an unauthenticated attacker to crash the 389-ds-base directory server. The highest threat from this vulnerability is to system availability.

EPSS

Процентиль: 84%
0.02395
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-476