Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-22185

Опубликовано: 07 янв. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий

Описание

OpenLDAP Lightning Memory-Mapped Database (LMDB) versions up to and including 0.9.14, prior to commit 8e1fda8, contain a heap buffer underflow in the readline() function of mdb_load. When processing malformed input containing an embedded NUL byte, an unsigned offset calculation can underflow and cause an out-of-bounds read of one byte before the allocated heap buffer. This can cause mdb_load to crash, leading to a limited denial-of-service condition.

РелизСтатусПримечание
devel

deferred

2026-06-30
esm-apps-legacy/xenial

deferred

2026-06-30
esm-apps/bionic

deferred

2026-06-30
esm-apps/xenial

ignored

end of ESM support, was deferred [2026-06-30]
esm-infra-legacy/trusty

not-affected

code not present
esm-infra/focal

deferred

2026-06-30
jammy

deferred

2026-06-30
noble

deferred

2026-06-30
plucky

ignored

end of life, was needed
questing

ignored

end of life, was deferred [2026-06-30]

Показывать по

РелизСтатусПримечание
devel

not-affected

code not compiled
esm-infra-legacy/trusty

not-affected

code not compiled
esm-infra-legacy/xenial

not-affected

code not compiled
esm-infra/bionic

not-affected

code not compiled
esm-infra/focal

not-affected

code not compiled
esm-infra/xenial

not-affected

code not compiled
jammy

not-affected

code not compiled
noble

not-affected

code not compiled
plucky

not-affected

code not compiled
questing

not-affected

code not compiled

Показывать по

EPSS

Процентиль: 3%
0.00127
Низкий

Связанные уязвимости

CVSS3: 6.8
redhat
7 месяцев назад

OpenLDAP Lightning Memory-Mapped Database (LMDB) versions up to and including 0.9.14, prior to commit 8e1fda8, contain a heap buffer underflow in the readline() function of mdb_load. When processing malformed input containing an embedded NUL byte, an unsigned offset calculation can underflow and cause an out-of-bounds read of one byte before the allocated heap buffer. This can cause mdb_load to crash, leading to a limited denial-of-service condition.

nvd
7 месяцев назад

OpenLDAP Lightning Memory-Mapped Database (LMDB) versions up to and including 0.9.14, prior to commit 8e1fda8, contain a heap buffer underflow in the readline() function of mdb_load. When processing malformed input containing an embedded NUL byte, an unsigned offset calculation can underflow and cause an out-of-bounds read of one byte before the allocated heap buffer. This can cause mdb_load to crash, leading to a limited denial-of-service condition.

msrc
7 месяцев назад

OpenLDAP <= 2.6.10 LMDB mdb_load Heap Buffer Underflow in readline()

debian
7 месяцев назад

OpenLDAP Lightning Memory-Mapped Database (LMDB) versions up to and in ...

suse-cvrf
7 месяцев назад

Security update for openldap2_5

EPSS

Процентиль: 3%
0.00127
Низкий