Vulnerability CVE-2011-0019


Published: 2011-02-23   Modified: 2012-02-13

Description:
slapd (aka ns-slapd) in 389 Directory Server 1.2.7.5 (aka Red Hat Directory Server 8.2.x or dirsrv) does not properly handle simple paged result searches, which allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via multiple search requests.

Type:

CWE-20

(Improper Input Validation)

Vendor: Redhat
Product: Directory server 
Version: 8.2.3; 8.2;
Vendor: Fedoraproject
Product: 389 directory server 
Version: 1.2.7.5;

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.5/10
6.4/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial

 References:
https://bugzilla.redhat.com/show_bug.cgi?id=670914
https://bugzilla.redhat.com/show_bug.cgi?id=666076
http://www.securitytracker.com/id?1025102
http://www.securityfocus.com/bid/46489
http://www.redhat.com/support/errata/RHSA-2011-0293.html

Related CVE
CVE-2019-14896
A heap-based buffer overflow vulnerability was found in the Linux kernel, version kernel-2.6.32, in Marvell WiFi chip driver. A remote attacker could cause a denial of service (system crash) or, possibly execute arbitrary code, when the lbs_ibss_join...
CVE-2019-14891
A flaw was found in cri-o, as a result of all pod-related processes being placed in the same memory cgroup. This can result in container management (conmon) processes being killed if a workload process triggers an out-of-memory (OOM) condition for th...
CVE-2019-13723
Use after free in WebBluetooth in Google Chrome prior to 78.0.3904.108 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.
CVE-2012-5630
libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees.
CVE-2012-5644
libuser has information disclosure when moving user's home directory
CVE-2012-5617
gksu-polkit: permissive PolicyKit policy configuration file allows privilege escalation
CVE-2012-5535
gnome-system-log polkit policy allows arbitrary files on the system to be read
CVE-2019-18887
An issue was discovered in Symfony 2.8.0 through 2.8.50, 3.4.0 through 3.4.34, 4.2.0 through 4.2.11, and 4.3.0 through 4.3.7. The UriSigner was subject to timing attacks. This is related to symfony/http-kernel.

Copyright 2019, cxsecurity.com

 

Back to Top