Lucene search

K
osvGoogleOSV:DSA-1650-1
HistoryOct 12, 2008 - 12:00 a.m.

openldap2.3 - denial of service

2008-10-1200:00:00
Google
osv.dev
13

EPSS

0.823

Percentile

98.4%

Cameron Hotchkies discovered that the OpenLDAP server slapd, a free
implementation of the Lightweight Directory Access Protocol, could be
crashed by sending malformed ASN1 requests.

For the stable distribution (etch), this problem has been fixed in
version 2.3.30-5+etch2.

For the unstable distribution (sid), this problem has been fixed in
version 2.4.10-3 of the openldap package.

We recommend that you upgrade your openldap2.3 packages.