Asymmetric denial of service In 389-ds-base
Description
A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it could lead to a Denial of Service (DoS) or system crash.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 11 | - | ||
debian 12 | - | ||
debian 13 | 3.1.2+dfsg1-1 | ||
rpm rhel9.4 | 0:2.4.5-14.el9_4 | ||
rpm rhel9 | 0:2.6.1-8.el9_6 | ||
rpm rhel6 | - | - | |
rpm rhel7 | - | - | |
rpm rhel8 | - | - |
Aliases
1. 2. 3. 4. 5.