CVE Vulnerabilities

CVE-2008-0658

Published: Feb 13, 2008 | Modified: Oct 15, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

slapd/back-bdb/modrdn.c in the BDB backend for slapd in OpenLDAP 2.3.39 allows remote authenticated users to cause a denial of service (daemon crash) via a modrdn operation with a NOOP (LDAP_X_NO_OPERATION) control, a related issue to CVE-2007-6698.

Affected Software

Name Vendor Start Version End Version
Openldap Openldap 2.3.39 (including) 2.3.39 (including)
Red Hat Enterprise Linux 4 RedHat openldap-0:2.2.13-8.el4_6.4 *
Red Hat Enterprise Linux 5 RedHat openldap-0:2.3.27-8.el5_1.3 *
Openldap2 Ubuntu dapper *
Openldap2 Ubuntu devel *
Openldap2 Ubuntu edgy *
Openldap2 Ubuntu feisty *
Openldap2 Ubuntu gutsy *
Openldap2 Ubuntu upstream *
Openldap2.2 Ubuntu dapper *
Openldap2.2 Ubuntu edgy *
Openldap2.2 Ubuntu upstream *
Openldap2.3 Ubuntu feisty *
Openldap2.3 Ubuntu gutsy *
Openldap2.3 Ubuntu upstream *

References