Lucene search

K
osvGoogleOSV:USN-4888-1
HistoryMar 24, 2021 - 6:08 p.m.

ldb vulnerabilities

2021-03-2418:08:35
Google
osv.dev
10

7.9 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.7%

Douglas Bagnall discovered that ldb, when used with Samba, incorrectly
handled certain LDAP attributes. A remote attacker could possibly use this
issue to cause the LDAP server to crash, resulting in a denial of service.
(CVE-2021-20277)

Douglas Bagnall discovered that ldb, when used with Samba, incorrectly
handled certain DN strings. A remote attacker could use this issue to
cause the LDAP server to crash, resulting in a denial of service, or
possibly execute arbitrary code. (CVE-2020-27840)