Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denial of service (CPU consumption and search outage) via crafted LDAP search requests with patterns, related to a single-threaded regular-expression subsystem.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Directory_server | Fedora | 1.1.1 (including) | 1.1.1 (including) |
Directory_server | Redhat | 7.1-sp1 (including) | 7.1-sp1 (including) |
Directory_server | Redhat | 7.1-sp2 (including) | 7.1-sp2 (including) |
Directory_server | Redhat | 7.1-sp3 (including) | 7.1-sp3 (including) |
Directory_server | Redhat | 7.1-sp4 (including) | 7.1-sp4 (including) |
Directory_server | Redhat | 7.1-sp5 (including) | 7.1-sp5 (including) |
Directory_server | Redhat | 7.1-sp6 (including) | 7.1-sp6 (including) |
Directory_server | Redhat | 8.0 (including) | 8.0 (including) |
Red Hat Directory Server 7.1 for RHEL 3 | RedHat | redhat-ds-0:7.1SP7-14.RHEL3 | * |
Red Hat Directory Server 7.1 for RHEL 4 | RedHat | redhat-ds-0:7.1SP7-14.RHEL4 | * |
Red Hat Directory Server 8 for RHEL 5 | RedHat | redhat-ds-admin-0:8.0.4-3.el5dsrv | * |
Red Hat Directory Server 8 for RHEL 5 | RedHat | redhat-ds-base-0:8.0.4-7.el5dsrv | * |