Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-25709

Опубликовано: 18 мая 2021
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5
CVSS3: 7.5

Описание

A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.

РелизСтатусПримечание
bionic

released

2.4.45+dfsg-1ubuntu1.8
devel

released

2.4.53+dfsg-1ubuntu5
esm-infra-legacy/trusty

released

2.4.31-1+nmu2ubuntu8.5+esm4
esm-infra/bionic

released

2.4.45+dfsg-1ubuntu1.8
esm-infra/focal

released

2.4.49+dfsg-2ubuntu1.5
esm-infra/xenial

released

2.4.42+dfsg-2ubuntu3.11
focal

released

2.4.49+dfsg-2ubuntu1.5
groovy

released

2.4.53+dfsg-1ubuntu1.2
precise/esm

not-affected

2.4.28-1.1ubuntu4.12
trusty

ignored

end of standard support

Показывать по

EPSS

Процентиль: 97%
0.37395
Средний

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 5 лет назад

A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
nvd
больше 4 лет назад

A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
debian
больше 4 лет назад

A flaw was found in OpenLDAP. This flaw allows an attacker who can sen ...

github
больше 3 лет назад

A flaw was found in OpenLDAP. This flaw allows an attacker who can send a malicious packet to be processed by OpenLDAP’s slapd server, to trigger an assertion failure. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
fstec
больше 5 лет назад

Уязвимость сервера slapd реализации протокола LDAP OpenLDAP, связанная с недостатком использования функции assert(), позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 97%
0.37395
Средний

5 Medium

CVSS2

7.5 High

CVSS3