Critical Path (1) InJoin Directory Server or (2) LiveContent Directory allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via malformed BER encodings, as demonstrated by the PROTOS LDAPv3 test suite.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Injoin_directory_server | Critical_path | 2.0 (including) | 2.0 (including) |
Injoin_directory_server | Critical_path | 2.1 (including) | 2.1 (including) |
Injoin_directory_server | Critical_path | 3.0 (including) | 3.0 (including) |
Injoin_directory_server | Critical_path | 3.1 (including) | 3.1 (including) |
Injoin_directory_server | Critical_path | 4.0 (including) | 4.0 (including) |
Livecontent_directory | Critical_path | 8a3 (including) | 8a3 (including) |