Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-12243

Опубликовано: 28 апр. 2020
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

Отчет

This issue does not affect Red Hat Enterprise Linux 8 because we don't ship openldap-servers subpackage with the Red Hat Enterprise Linux 8 (it is only present in the buildroot).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5openldapOut of support scope
Red Hat Enterprise Linux 6compat-openldapOut of support scope
Red Hat Enterprise Linux 6openldapOut of support scope
Red Hat Enterprise Linux 7compat-openldapWill not fix
Red Hat Enterprise Linux 8openldapNot affected
Red Hat JBoss Core ServicesopenldapNot affected
Red Hat JBoss Enterprise Application Platform 5openldapOut of support scope
Red Hat JBoss Enterprise Web Server 2openldapOut of support scope
Red Hat Enterprise Linux 7openldapFixedRHSA-2020:404129.09.2020
Red Hat OpenShift Doopenshiftdo/odo-init-image-rhel7FixedRHSA-2021:094922.03.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=1833535openldap: denial of service via nested boolean expressions in LDAP search filters

EPSS

Процентиль: 90%
0.04423
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

CVSS3: 7.5
nvd
больше 6 лет назад

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

CVSS3: 7.5
debian
больше 6 лет назад

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters wi ...

suse-cvrf
около 6 лет назад

Security update for openldap2

suse-cvrf
около 6 лет назад

Security update for openldap2

EPSS

Процентиль: 90%
0.04423
Низкий

7.5 High

CVSS3