Multiple memory leaks in the LDAP component in Fedora Directory Server 1.0 allow remote attackers to cause a denial of service (memory consumption) via invalid BER packets that trigger an error, which might prevent memory from being freed if it was allocated during the ber_scanf call, as demonstrated using the ProtoVer LDAP test suite.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fedora_core | Redhat | 1.0 (including) | 1.0 (including) |
RHEL 4 Directory Server AS | RedHat | * |