Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-12243

Опубликовано: 28 апр. 2020
Источник: redhat
CVSS3: 7.5
EPSS Средний

Описание

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

Отчет

This issue does not affect Red Hat Enterprise Linux 8 because we don't ship openldap-servers subpackage with the Red Hat Enterprise Linux 8 (it is only present in the buildroot).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5openldapOut of support scope
Red Hat Enterprise Linux 6compat-openldapOut of support scope
Red Hat Enterprise Linux 6openldapOut of support scope
Red Hat Enterprise Linux 7compat-openldapWill not fix
Red Hat Enterprise Linux 8openldapNot affected
Red Hat JBoss Core ServicesopenldapNot affected
Red Hat JBoss Enterprise Application Platform 5openldapOut of support scope
Red Hat JBoss Enterprise Web Server 2openldapOut of support scope
Red Hat Enterprise Linux 7openldapFixedRHSA-2020:404129.09.2020
Red Hat OpenShift Doopenshiftdo/odo-init-image-rhel7FixedRHSA-2021:094922.03.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=1833535openldap: denial of service via nested boolean expressions in LDAP search filters

EPSS

Процентиль: 93%
0.10757
Средний

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

CVSS3: 7.5
nvd
почти 6 лет назад

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial of service (daemon crash).

CVSS3: 7.5
debian
почти 6 лет назад

In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters wi ...

suse-cvrf
больше 5 лет назад

Security update for openldap2

suse-cvrf
почти 6 лет назад

Security update for openldap2

EPSS

Процентиль: 93%
0.10757
Средний

7.5 High

CVSS3