Описание
389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.
Релиз | Статус | Примечание |
---|---|---|
devel | not-affected | 1.3.0.3-1ubuntu1 |
esm-apps/xenial | not-affected | 1.3.0.3-1ubuntu1 |
esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [1.3.0.3-1ubuntu1]] |
hardy | DNE | |
lucid | DNE | |
natty | DNE | |
oneiric | DNE | |
precise | ignored | end of life |
precise/esm | DNE | precise was needed |
quantal | ignored | end of life |
Показывать по
Ссылки на источники
EPSS
6 Medium
CVSS2
Связанные уязвимости
389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.
389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.
389 Directory Server 1.2.10 does not properly update the ACL when a DN ...
389 Directory Server 1.2.10 does not properly update the ACL when a DN entry is moved by a modrdn operation, which allows remote authenticated users with certain permissions to bypass ACL restrictions and access the DN entry.
ELSA-2013-0503: 389-ds-base security, bug fix, and enhancement update (MODERATE)
EPSS
6 Medium
CVSS2