Описание
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
Релиз | Статус | Примечание |
---|---|---|
dapper | ignored | |
devel | ignored | |
edgy | ignored | |
feisty | ignored | |
gutsy | ignored | |
upstream | needed |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 2.2.26-5ubuntu2.4 |
devel | DNE | |
edgy | released | 2.2.26-5ubuntu3.2 |
feisty | DNE | |
gutsy | DNE | |
upstream | released | 2.2.39 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
dapper | DNE | |
devel | not-affected | |
edgy | DNE | |
feisty | released | 2.3.30-2ubuntu0.1 |
gutsy | released | 2.3.35-1ubuntu0.1 |
upstream | released | 2.3.39 |
Показывать по
EPSS
7.1 High
CVSS2
Связанные уязвимости
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, w ...
slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.
Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить доступность защищаемой информации
EPSS
7.1 High
CVSS2