CVE Vulnerabilities

CVE-2008-3283

Published: Aug 29, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple memory leaks in Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 and earlier allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) the authentication / bind phase and (2) anonymous LDAP search requests.

Affected Software

NameVendorStart VersionEnd Version
Directory_serverFedora1.1.1 (including)1.1.1 (including)
Directory_serverRedhat7.1-sp1 (including)7.1-sp1 (including)
Directory_serverRedhat7.1-sp2 (including)7.1-sp2 (including)
Directory_serverRedhat7.1-sp3 (including)7.1-sp3 (including)
Directory_serverRedhat7.1-sp4 (including)7.1-sp4 (including)
Directory_serverRedhat7.1-sp5 (including)7.1-sp5 (including)
Directory_serverRedhat7.1-sp6 (including)7.1-sp6 (including)
Directory_serverRedhat8.0 (including)8.0 (including)
Red Hat Directory Server 7.1 for RHEL 3RedHatredhat-ds-0:7.1SP7-14.RHEL3*
Red Hat Directory Server 7.1 for RHEL 4RedHatredhat-ds-0:7.1SP7-14.RHEL4*
Red Hat Directory Server 8 for RHEL 5RedHatredhat-ds-admin-0:8.0.4-3.el5dsrv*
Red Hat Directory Server 8 for RHEL 5RedHatredhat-ds-base-0:8.0.4-7.el5dsrv*

References