Untriaged
Permalink
CVE-2024-6237
6.5 MEDIUM
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): LOW
- Privileges required (PR): LOW
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): NONE
- Integrity impact (I): NONE
- Availability impact (A): HIGH
389-ds-base: unauthenticated user can trigger a dos by sending a specific extended search request
A flaw was found in the 389 Directory Server. This flaw allows an unauthenticated user to cause a systematic server crash while sending a specific extended search request, leading to a denial of service.
References
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
-
-
-
-
-
-
-
https://github.com/389ds/389-ds-base/issues/5989 x_transferred
Affected products
389-ds-base
- *
- <2.4.5
redhat-ds:12
- *
389-ds:1.4/389-ds-base
redhat-ds:11/389-ds-base
redhat-ds:12/389-ds-base
Matching in nixpkgs
pkgs._389-ds-base
Enterprise-class Open Source LDAP server for Linux
Package maintainers
-
@ners ners <ners@gmx.ch>